Microsoft Windows Server Version 2004 vulnerabilities
747 known vulnerabilities affecting microsoft/windows_server_version_2004.
Total CVEs
747
CISA KEV
27
actively exploited
Public exploits
20
Exploited in wild
35
Severity breakdown
CRITICAL32HIGH535MEDIUM177LOW3
Vulnerabilities
Page 4 of 38
CVE-2021-34494P3HIGHCVSS 8.8≥ 10.0.0, < 10.0.19041.11102021-07-14
CVE-2021-34494 [HIGH] CVE-2021-34494: Windows DNS Server Remote Code Execution Vulnerability
Windows DNS Server Remote Code Execution Vulnerability
nvd
CVE-2021-36958P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.19041.12372021-08-12
CVE-2021-36958 [HIGH] CVE-2021-36958: <p>A remote code execution vulnerability exists when the Windows Print Spooler service improperly pe
A remote code execution vulnerability exists when the Windows Print Spooler service improperly performs privileged file operations. An attacker who successfully exploited this vulnerability could run arbitrary code with SYSTEM privileges. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.
nvd
CVE-2021-31962P3CRITICALCVSS 9.8≥ 10.0.0, < 10.0.19041.10522021-06-08
CVE-2021-31962 [CRITICAL] CVE-2021-31962: Kerberos AppContainer Security Feature Bypass Vulnerability
Kerberos AppContainer Security Feature Bypass Vulnerability
nvd
CVE-2026-50508P3HIGHCVSS 7.5≥ 10.0.0, < 10.0.19045.74172026-06-09
CVE-2026-50508 [HIGH] CWE-200 CVE-2026-50508: Exposure of sensitive information to an unauthorized actor in Windows NTLM allows an unauthorized at
Exposure of sensitive information to an unauthorized actor in Windows NTLM allows an unauthorized attacker to perform spoofing over a network.
nvd
CVE-2021-28445P3HIGHCVSS 8.8≥ 10.0.0, < publication2021-04-13
CVE-2021-28445 [HIGH] CVE-2021-28445: Windows Network File System Remote Code Execution Vulnerability
Windows Network File System Remote Code Execution Vulnerability
nvd
CVE-2021-33780P3HIGHCVSS 8.8≥ 10.0.0, < 10.0.19041.11102021-07-14
CVE-2021-33780 [HIGH] CVE-2021-33780: Windows DNS Server Remote Code Execution Vulnerability
Windows DNS Server Remote Code Execution Vulnerability
nvd
CVE-2021-24088P3HIGHCVSS 8.8≥ 10.0.0, < publication2021-02-25
CVE-2021-24088 [HIGH] CVE-2021-24088: Windows Local Spooler Remote Code Execution Vulnerability
Windows Local Spooler Remote Code Execution Vulnerability
nvd
CVE-2021-28455P3HIGHCVSS 8.8≥ 10.0.0, < 10.0.19041.9822021-05-11
CVE-2021-28455 [HIGH] CVE-2021-28455: Microsoft Jet Red Database Engine and Access Connectivity Engine Remote Code Execution Vulnerability
Microsoft Jet Red Database Engine and Access Connectivity Engine Remote Code Execution Vulnerability
nvd
CVE-2021-34525P3HIGHCVSS 8.8≥ 10.0.0, < 10.0.19041.11102021-07-14
CVE-2021-34525 [HIGH] CVE-2021-34525: Windows DNS Server Remote Code Execution Vulnerability
Windows DNS Server Remote Code Execution Vulnerability
nvd
CVE-2021-34508P3HIGHCVSS 8.8≥ 10.0.0, < 10.0.19041.11102021-07-14
CVE-2021-34508 [HIGH] CVE-2021-34508: Windows Kernel Remote Code Execution Vulnerability
Windows Kernel Remote Code Execution Vulnerability
nvd
CVE-2021-33746P3HIGHCVSS 8.8≥ 10.0.0, < 10.0.19041.11102021-07-14
CVE-2021-33746 [HIGH] CVE-2021-33746: Windows DNS Server Remote Code Execution Vulnerability
Windows DNS Server Remote Code Execution Vulnerability
nvd
CVE-2021-43215P3CRITICALCVSS 9.8≥ 10.0.0, < 10.0.19041.14152021-12-15
CVE-2021-43215 [CRITICAL] CWE-787 CVE-2021-43215: iSNS Server Memory Corruption Vulnerability Can Lead to Remote Code Execution
iSNS Server Memory Corruption Vulnerability Can Lead to Remote Code Execution
nvd
CVE-2020-0761P3HIGHCVSS 8.8≥ 10.0.0, < publication2020-09-11
CVE-2020-0761 [HIGH] CVE-2020-0761: <p>A remote code execution vulnerability exists when Active Directory integrated DNS (ADIDNS) mishan
A remote code execution vulnerability exists when Active Directory integrated DNS (ADIDNS) mishandles objects in memory. An authenticated attacker who successfully exploited the vulnerability could run arbitrary code in the context of the Local System Account
To exploit the vulnerability, an authenticated attacker could send malicious requests to an Active Dire
nvd
CVE-2020-0718P3HIGHCVSS 8.8≥ 10.0.0, < publication2020-09-11
CVE-2020-0718 [HIGH] CVE-2020-0718: <p>A remote code execution vulnerability exists when Active Directory integrated DNS (ADIDNS) mishan
A remote code execution vulnerability exists when Active Directory integrated DNS (ADIDNS) mishandles objects in memory. An authenticated attacker who successfully exploited the vulnerability could run arbitrary code in the context of the Local System Account
To exploit the vulnerability, an authenticated attacker could send malicious requests to an Active Dire
nvd
CVE-2021-1700P3HIGHCVSS 8.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1700 [HIGH] CVE-2021-1700: Remote Procedure Call Runtime Remote Code Execution Vulnerability
Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2021-1701P3HIGHCVSS 8.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1701 [HIGH] CVE-2021-1701: Remote Procedure Call Runtime Remote Code Execution Vulnerability
Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2021-1667P3HIGHCVSS 8.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1667 [HIGH] CVE-2021-1667: Remote Procedure Call Runtime Remote Code Execution Vulnerability
Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2021-1666P3HIGHCVSS 8.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1666 [HIGH] CVE-2021-1666: Remote Procedure Call Runtime Remote Code Execution Vulnerability
Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2021-1658P3HIGHCVSS 8.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1658 [HIGH] CVE-2021-1658: Remote Procedure Call Runtime Remote Code Execution Vulnerability
Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2021-1660P3HIGHCVSS 8.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1660 [HIGH] CVE-2021-1660: Remote Procedure Call Runtime Remote Code Execution Vulnerability
Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd