cbcvebase.

Microsoft Windows Server 2019 vulnerabilities

3,952 known vulnerabilities affecting microsoft/windows_server_2019.

Total CVEs
3,952
CISA KEV
125
actively exploited
Public exploits
113
Exploited in wild
171
Severity breakdown
CRITICAL126HIGH2786MEDIUM1024LOW16

Vulnerabilities

Page 139 of 198
CVE-2022-38041P3HIGHCVSS 7.5≥ 10.0.17763.0, < 10.0.17763.35322022-10-11
CVE-2022-38041 [HIGH] CVE-2022-38041: Windows Secure Channel Denial of Service Vulnerability Windows Secure Channel Denial of Service Vulnerability
nvd
CVE-2020-1228P3MEDIUMCVSS 6.5≥ 10.0.0, < publication2020-09-11
CVE-2020-1228 [MEDIUM] CVE-2020-1228: <p>A denial of service vulnerability exists in Windows DNS when it fails to properly handle queries. A denial of service vulnerability exists in Windows DNS when it fails to properly handle queries. An attacker who successfully exploited this vulnerability could cause the DNS service to become nonresponsive. To exploit the vulnerability, an authenticated attacker could send malicious DNS queries to a target, resulting in a denial of service. The update addre
nvd
CVE-2023-28241P3HIGHCVSS 7.5≥ 10.0.17763.0, < 10.0.17763.42522023-04-11
CVE-2023-28241 [HIGH] CVE-2023-28241: Windows Secure Socket Tunneling Protocol (SSTP) Denial of Service Vulnerability Windows Secure Socket Tunneling Protocol (SSTP) Denial of Service Vulnerability
nvd
CVE-2020-1091P3MEDIUMCVSS 6.5≥ 10.0.0, < publication2020-09-11
CVE-2020-1091 [MEDIUM] CVE-2020-1091: <p>An information disclosure vulnerability exists when the Windows GDI component improperly disclose An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory. An attacker who successfully exploited the vulnerability could obtain information to further compromise a user’s system. There are multiple ways an attacker could exploit the vulnerability, such as by convincing a user to open a speci
nvd
CVE-2022-35769P3HIGHCVSS 7.5≥ 10.0.17763.0, < 10.0.17763.32872022-08-09
CVE-2022-35769 [HIGH] CWE-400 CVE-2022-35769: Windows Point-to-Point Protocol (PPP) Denial of Service Vulnerability Windows Point-to-Point Protocol (PPP) Denial of Service Vulnerability
nvd
CVE-2023-35338P3HIGHCVSS 7.5≥ 10.0.17763.0, < 10.0.17763.46452023-07-11
CVE-2023-35338 [HIGH] CWE-476 CVE-2023-35338: Windows Peer Name Resolution Protocol Denial of Service Vulnerability Windows Peer Name Resolution Protocol Denial of Service Vulnerability
nvd
CVE-2023-32011P3HIGHCVSS 7.5fixed in 10.0.17763.4499≥ 10.0.17763.0, < 10.0.17763.44992023-06-14
CVE-2023-32011 [HIGH] CWE-125 CVE-2023-32011: Windows iSCSI Discovery Service Denial of Service Vulnerability Windows iSCSI Discovery Service Denial of Service Vulnerability
nvd
CVE-2023-28217P3HIGHCVSS 7.5≥ 10.0.17763.0, < 10.0.17763.42522023-04-11
CVE-2023-28217 [HIGH] CWE-400 CVE-2023-28217: Windows Network Address Translation (NAT) Denial of Service Vulnerability Windows Network Address Translation (NAT) Denial of Service Vulnerability
nvd
CVE-2022-41058P3HIGHCVSS 7.5≥ 10.0.17763.0, < 10.0.17763.36502022-11-09
CVE-2022-41058 [HIGH] CVE-2022-41058: Windows Network Address Translation (NAT) Denial of Service Vulnerability Windows Network Address Translation (NAT) Denial of Service Vulnerability
nvd
CVE-2023-36912P3HIGHCVSS 7.5≥ 10.0.17763.0, < 10.0.17763.47372023-08-08
CVE-2023-36912 [HIGH] CWE-20 CVE-2023-36912: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2023-38172P3HIGHCVSS 7.5≥ 10.0.17763.0, < 10.0.17763.47372023-08-08
CVE-2023-38172 [HIGH] CWE-126 CVE-2023-38172: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2023-24859P3HIGHCVSS 7.5≥ 10.0.17763.0, < 10.0.17763.41312023-03-14
CVE-2023-24859 [HIGH] CWE-476 CVE-2023-24859: Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability
nvd
CVE-2023-21813P3HIGHCVSS 7.5≥ 10.0.17763.0, < 10.0.17763.40102023-02-14
CVE-2023-21813 [HIGH] CWE-126 CVE-2023-21813: Windows Secure Channel Denial of Service Vulnerability Windows Secure Channel Denial of Service Vulnerability
nvd
CVE-2023-32044P3HIGHCVSS 7.5≥ 10.0.17763.0, < 10.0.17763.46452023-07-11
CVE-2023-32044 [HIGH] CWE-125 CVE-2023-32044: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2023-32045P3HIGHCVSS 7.5≥ 10.0.17763.0, < 10.0.17763.46452023-07-11
CVE-2023-32045 [HIGH] CWE-125 CVE-2023-32045: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2020-16997P4MEDIUMCVSS 6.5≥ 10.0.0, < publication2020-11-11
CVE-2020-16997 [MEDIUM] CVE-2020-16997: Remote Desktop Protocol Server Information Disclosure Vulnerability Remote Desktop Protocol Server Information Disclosure Vulnerability
nvd
CVE-2020-1487P3MEDIUMCVSS 6.5≥ 10.0.0, < publication2020-08-17
CVE-2020-1487 [MEDIUM] CVE-2020-1487: An information disclosure vulnerability exists when Media Foundation improperly handles objects in m An information disclosure vulnerability exists when Media Foundation improperly handles objects in memory. An attacker who successfully exploited this vulnerability could obtain information to further compromise the user’s system. To exploit this vulnerability, an attacker would have to log onto an affected system and open a specially crafted file. In a web-b
nvd
CVE-2023-36805P4HIGHCVSS 7.0fixed in 10.0.17763.4851≥ 10.0.17763.0, < 10.0.17763.48512023-09-12
CVE-2023-36805 [HIGH] CWE-77 CVE-2023-36805: Windows MSHTML Platform Security Feature Bypass Vulnerability Windows MSHTML Platform Security Feature Bypass Vulnerability
nvd
CVE-2021-43216P3MEDIUMCVSS 6.5≥ 10.0.0, < 10.0.17763.23662021-12-15
CVE-2021-43216 [MEDIUM] CWE-668 CVE-2021-43216: Microsoft Local Security Authority (LSA) Server Information Disclosure Vulnerability Microsoft Local Security Authority (LSA) Server Information Disclosure Vulnerability
nvd
CVE-2022-35822P3HIGHCVSS 7.1≥ 10.0.17763.0, < 10.0.17763.32872022-08-15
CVE-2022-35822 [HIGH] CVE-2022-35822: Windows Defender Credential Guard Security Feature Bypass Vulnerability Windows Defender Credential Guard Security Feature Bypass Vulnerability
nvd
Microsoft Windows Server 2019 vulnerabilities | cvebase