cbcvebase.

Microsoft Windows Server Version 2004 vulnerabilities

747 known vulnerabilities affecting microsoft/windows_server_version_2004.

Total CVEs
747
CISA KEV
27
actively exploited
Public exploits
20
Exploited in wild
35
Severity breakdown
CRITICAL32HIGH535MEDIUM177LOW3

Vulnerabilities

Page 17 of 38
CVE-2020-1587P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-08-17
CVE-2020-1587 [HIGH] CVE-2020-1587: An elevation of privilege vulnerability exists when the Windows Ancillary Function Driver for WinSoc An elevation of privilege vulnerability exists when the Windows Ancillary Function Driver for WinSock improperly handles memory. To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges. The security update addresses the vulnerability by c
nvd
CVE-2020-1590P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-09-11
CVE-2020-1590 [HIGH] CVE-2020-1590: <p>An elevation of privilege vulnerability exists when the Connected User Experiences and Telemetry An elevation of privilege vulnerability exists when the Connected User Experiences and Telemetry Service improperly handles file operations. An attacker who successfully exploited this vulnerability could gain elevated privileges on the victim system. To exploit the vulnerability, an attacker would first have to gain execution on the victim system, then run a sp
nvd
CVE-2021-38634P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.19041.12372021-09-15
CVE-2021-38634 [HIGH] CWE-269 CVE-2021-38634: Microsoft Windows Update Client Elevation of Privilege Vulnerability Microsoft Windows Update Client Elevation of Privilege Vulnerability
nvd
CVE-2021-40489P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.19041.12882021-10-13
CVE-2021-40489 [HIGH] CWE-269 CVE-2021-40489: Storage Spaces Controller Elevation of Privilege Vulnerability Storage Spaces Controller Elevation of Privilege Vulnerability
nvd
CVE-2021-40478P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.19041.12882021-10-13
CVE-2021-40478 [HIGH] CWE-269 CVE-2021-40478: Storage Spaces Controller Elevation of Privilege Vulnerability Storage Spaces Controller Elevation of Privilege Vulnerability
nvd
CVE-2021-31952P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.19041.10522021-06-08
CVE-2021-31952 [HIGH] CVE-2021-31952: Windows Kernel-Mode Driver Elevation of Privilege Vulnerability Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
nvd
CVE-2021-41345P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.19041.12882021-10-13
CVE-2021-41345 [HIGH] CWE-269 CVE-2021-41345: Storage Spaces Controller Elevation of Privilege Vulnerability Storage Spaces Controller Elevation of Privilege Vulnerability
nvd
CVE-2021-27090P3HIGHCVSS 7.8≥ 10.0.0, < publication2021-04-13
CVE-2021-27090 [HIGH] CVE-2021-27090: Windows Secure Kernel Mode Elevation of Privilege Vulnerability Windows Secure Kernel Mode Elevation of Privilege Vulnerability
nvd
CVE-2020-1538P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-08-17
CVE-2020-1538 [HIGH] CVE-2020-1538: An elevation of privilege vulnerability exists when the Windows UPnP Device Host improperly handles An elevation of privilege vulnerability exists when the Windows UPnP Device Host improperly handles memory. To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges. The security update addresses the vulnerability by correcting how the Wind
nvd
CVE-2020-1517P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-08-17
CVE-2020-1517 [HIGH] CVE-2020-1517: An elevation of privilege vulnerability exists when the Windows File Server Resource Management Serv An elevation of privilege vulnerability exists when the Windows File Server Resource Management Service improperly handles memory. To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges. The security update addresses the vulnerability by
nvd
CVE-2020-1526P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-08-17
CVE-2020-1526 [HIGH] CVE-2020-1526: An elevation of privilege vulnerability exists when the Windows Network Connection Broker improperly An elevation of privilege vulnerability exists when the Windows Network Connection Broker improperly handles memory. To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges. The security update addresses the vulnerability by correcting ho
nvd
CVE-2020-1488P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-08-17
CVE-2020-1488 [HIGH] CWE-269 CVE-2020-1488: An elevation of privilege vulnerability exists when the Windows AppX Deployment Extensions improperl An elevation of privilege vulnerability exists when the Windows AppX Deployment Extensions improperly performs privilege management, resulting in access to system files. To exploit this vulnerability, an authenticated attacker would need to run a specially crafted application to elevate privileges. The security update addresses the vulnerability by corr
nvd
CVE-2020-0912P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-09-11
CVE-2020-0912 [HIGH] CVE-2020-0912: <p>An elevation of privilege vulnerability exists when the Windows Function Discovery SSDP Provider An elevation of privilege vulnerability exists when the Windows Function Discovery SSDP Provider improperly handles memory. To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges. The security update addresses the vulnerability by correct
nvd
CVE-2020-1146P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-09-11
CVE-2020-1146 [HIGH] CVE-2020-1146: <p>An elevation of privilege vulnerability exists when the Microsoft Store Runtime improperly handle An elevation of privilege vulnerability exists when the Microsoft Store Runtime improperly handles memory. To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges. The security update addresses the vulnerability by correcting how the Micr
nvd
CVE-2021-1652P3HIGHCVSS 7.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1652 [HIGH] CWE-269 CVE-2021-1652: Windows CSC Service Elevation of Privilege Vulnerability Windows CSC Service Elevation of Privilege Vulnerability
nvd
CVE-2021-1653P3HIGHCVSS 7.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1653 [HIGH] CWE-269 CVE-2021-1653: Windows CSC Service Elevation of Privilege Vulnerability Windows CSC Service Elevation of Privilege Vulnerability
nvd
CVE-2021-1646P3HIGHCVSS 7.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1646 [HIGH] CWE-269 CVE-2021-1646: Windows WLAN Service Elevation of Privilege Vulnerability Windows WLAN Service Elevation of Privilege Vulnerability
nvd
CVE-2021-1693P3HIGHCVSS 7.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1693 [HIGH] CWE-269 CVE-2021-1693: Windows CSC Service Elevation of Privilege Vulnerability Windows CSC Service Elevation of Privilege Vulnerability
nvd
CVE-2021-1654P3HIGHCVSS 7.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1654 [HIGH] CWE-269 CVE-2021-1654: Windows CSC Service Elevation of Privilege Vulnerability Windows CSC Service Elevation of Privilege Vulnerability
nvd
CVE-2021-1655P3HIGHCVSS 7.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1655 [HIGH] CWE-269 CVE-2021-1655: Windows CSC Service Elevation of Privilege Vulnerability Windows CSC Service Elevation of Privilege Vulnerability
nvd
Microsoft Windows Server Version 2004 vulnerabilities | cvebase