cbcvebase.

Microsoft Windows Server Version 2004 vulnerabilities

747 known vulnerabilities affecting microsoft/windows_server_version_2004.

Total CVEs
747
CISA KEV
27
actively exploited
Public exploits
20
Exploited in wild
35
Severity breakdown
CRITICAL32HIGH535MEDIUM177LOW3

Vulnerabilities

Page 4 of 38
CVE-2021-34494P3HIGHCVSS 8.8≥ 10.0.0, < 10.0.19041.11102021-07-14
CVE-2021-34494 [HIGH] CVE-2021-34494: Windows DNS Server Remote Code Execution Vulnerability Windows DNS Server Remote Code Execution Vulnerability
nvd
CVE-2021-36958P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.19041.12372021-08-12
CVE-2021-36958 [HIGH] CVE-2021-36958: <p>A remote code execution vulnerability exists when the Windows Print Spooler service improperly pe A remote code execution vulnerability exists when the Windows Print Spooler service improperly performs privileged file operations. An attacker who successfully exploited this vulnerability could run arbitrary code with SYSTEM privileges. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.
nvd
CVE-2021-31962P3CRITICALCVSS 9.8≥ 10.0.0, < 10.0.19041.10522021-06-08
CVE-2021-31962 [CRITICAL] CVE-2021-31962: Kerberos AppContainer Security Feature Bypass Vulnerability Kerberos AppContainer Security Feature Bypass Vulnerability
nvd
CVE-2026-50508P3HIGHCVSS 7.5≥ 10.0.0, < 10.0.19045.74172026-06-09
CVE-2026-50508 [HIGH] CWE-200 CVE-2026-50508: Exposure of sensitive information to an unauthorized actor in Windows NTLM allows an unauthorized at Exposure of sensitive information to an unauthorized actor in Windows NTLM allows an unauthorized attacker to perform spoofing over a network.
nvd
CVE-2021-28445P3HIGHCVSS 8.8≥ 10.0.0, < publication2021-04-13
CVE-2021-28445 [HIGH] CVE-2021-28445: Windows Network File System Remote Code Execution Vulnerability Windows Network File System Remote Code Execution Vulnerability
nvd
CVE-2021-33780P3HIGHCVSS 8.8≥ 10.0.0, < 10.0.19041.11102021-07-14
CVE-2021-33780 [HIGH] CVE-2021-33780: Windows DNS Server Remote Code Execution Vulnerability Windows DNS Server Remote Code Execution Vulnerability
nvd
CVE-2021-24088P3HIGHCVSS 8.8≥ 10.0.0, < publication2021-02-25
CVE-2021-24088 [HIGH] CVE-2021-24088: Windows Local Spooler Remote Code Execution Vulnerability Windows Local Spooler Remote Code Execution Vulnerability
nvd
CVE-2021-28455P3HIGHCVSS 8.8≥ 10.0.0, < 10.0.19041.9822021-05-11
CVE-2021-28455 [HIGH] CVE-2021-28455: Microsoft Jet Red Database Engine and Access Connectivity Engine Remote Code Execution Vulnerability Microsoft Jet Red Database Engine and Access Connectivity Engine Remote Code Execution Vulnerability
nvd
CVE-2021-34525P3HIGHCVSS 8.8≥ 10.0.0, < 10.0.19041.11102021-07-14
CVE-2021-34525 [HIGH] CVE-2021-34525: Windows DNS Server Remote Code Execution Vulnerability Windows DNS Server Remote Code Execution Vulnerability
nvd
CVE-2021-34508P3HIGHCVSS 8.8≥ 10.0.0, < 10.0.19041.11102021-07-14
CVE-2021-34508 [HIGH] CVE-2021-34508: Windows Kernel Remote Code Execution Vulnerability Windows Kernel Remote Code Execution Vulnerability
nvd
CVE-2021-33746P3HIGHCVSS 8.8≥ 10.0.0, < 10.0.19041.11102021-07-14
CVE-2021-33746 [HIGH] CVE-2021-33746: Windows DNS Server Remote Code Execution Vulnerability Windows DNS Server Remote Code Execution Vulnerability
nvd
CVE-2021-43215P3CRITICALCVSS 9.8≥ 10.0.0, < 10.0.19041.14152021-12-15
CVE-2021-43215 [CRITICAL] CWE-787 CVE-2021-43215: iSNS Server Memory Corruption Vulnerability Can Lead to Remote Code Execution iSNS Server Memory Corruption Vulnerability Can Lead to Remote Code Execution
nvd
CVE-2020-0761P3HIGHCVSS 8.8≥ 10.0.0, < publication2020-09-11
CVE-2020-0761 [HIGH] CVE-2020-0761: <p>A remote code execution vulnerability exists when Active Directory integrated DNS (ADIDNS) mishan A remote code execution vulnerability exists when Active Directory integrated DNS (ADIDNS) mishandles objects in memory. An authenticated attacker who successfully exploited the vulnerability could run arbitrary code in the context of the Local System Account To exploit the vulnerability, an authenticated attacker could send malicious requests to an Active Dire
nvd
CVE-2020-0718P3HIGHCVSS 8.8≥ 10.0.0, < publication2020-09-11
CVE-2020-0718 [HIGH] CVE-2020-0718: <p>A remote code execution vulnerability exists when Active Directory integrated DNS (ADIDNS) mishan A remote code execution vulnerability exists when Active Directory integrated DNS (ADIDNS) mishandles objects in memory. An authenticated attacker who successfully exploited the vulnerability could run arbitrary code in the context of the Local System Account To exploit the vulnerability, an authenticated attacker could send malicious requests to an Active Dire
nvd
CVE-2021-1700P3HIGHCVSS 8.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1700 [HIGH] CVE-2021-1700: Remote Procedure Call Runtime Remote Code Execution Vulnerability Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2021-1701P3HIGHCVSS 8.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1701 [HIGH] CVE-2021-1701: Remote Procedure Call Runtime Remote Code Execution Vulnerability Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2021-1667P3HIGHCVSS 8.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1667 [HIGH] CVE-2021-1667: Remote Procedure Call Runtime Remote Code Execution Vulnerability Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2021-1666P3HIGHCVSS 8.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1666 [HIGH] CVE-2021-1666: Remote Procedure Call Runtime Remote Code Execution Vulnerability Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2021-1658P3HIGHCVSS 8.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1658 [HIGH] CVE-2021-1658: Remote Procedure Call Runtime Remote Code Execution Vulnerability Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2021-1660P3HIGHCVSS 8.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1660 [HIGH] CVE-2021-1660: Remote Procedure Call Runtime Remote Code Execution Vulnerability Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
Microsoft Windows Server Version 2004 vulnerabilities | cvebase