cbcvebase.

Microsoft Windows Server Version 2004 vulnerabilities

747 known vulnerabilities affecting microsoft/windows_server_version_2004.

Total CVEs
747
CISA KEV
27
actively exploited
Public exploits
20
Exploited in wild
35
Severity breakdown
CRITICAL32HIGH535MEDIUM177LOW3

Vulnerabilities

Page 8 of 38
CVE-2021-33752P3HIGHCVSS 8.8≥ 10.0.0, < 10.0.19041.11102021-07-14
CVE-2021-33752 [HIGH] CVE-2021-33752: Windows DNS Snap-in Remote Code Execution Vulnerability Windows DNS Snap-in Remote Code Execution Vulnerability
nvd
CVE-2021-33756P3HIGHCVSS 8.8≥ 10.0.0, < 10.0.19041.11102021-07-14
CVE-2021-33756 [HIGH] CVE-2021-33756: Windows DNS Snap-in Remote Code Execution Vulnerability Windows DNS Snap-in Remote Code Execution Vulnerability
nvd
CVE-2020-16891P3HIGHCVSS 8.8≥ 10.0.0, < publication2020-10-16
CVE-2020-16891 [HIGH] CWE-20 CVE-2020-16891: <p>A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to prope A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated user on a guest operating system. To exploit the vulnerability, an attacker could run a specially crafted application on a guest operating system that could cause the Hyper-V host operating system to execute arbitrar
nvd
CVE-2020-1013P3HIGHCVSS 8.1≥ 10.0.0, < publication2020-09-11
CVE-2020-1013 [HIGH] CVE-2020-1013: <p>An elevation of privilege vulnerability exists when Microsoft Windows processes group policy upda An elevation of privilege vulnerability exists when Microsoft Windows processes group policy updates. An attacker who successfully exploited this vulnerability could potentially escalate permissions or perform additional privileged actions on the target machine. To exploit this vulnerability, an attacker would need to launch a man-in-the-middle (MiTM) attack ag
nvd
CVE-2020-1129P3HIGHCVSS 8.8≥ 10.0.0, < publication2020-09-11
CVE-2020-1129 [HIGH] CVE-2020-1129: <p>A remote code execution vulnerability exists in the way that Microsoft Windows Codecs Library han A remote code execution vulnerability exists in the way that Microsoft Windows Codecs Library handles objects in memory. An attacker who successfully exploited this vulnerability could take control of the affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Exploitation of the vuln
nvd
CVE-2021-40469P3HIGHCVSS 7.2≥ 10.0.0, < 10.0.19041.12882021-10-13
CVE-2021-40469 [HIGH] CVE-2021-40469: Windows DNS Server Remote Code Execution Vulnerability Windows DNS Server Remote Code Execution Vulnerability
nvd
CVE-2021-1706P3HIGHCVSS 8.8≥ 10.0.0, < publication2021-01-12
CVE-2021-1706 [HIGH] CWE-269 CVE-2021-1706: Windows LUAFV Elevation of Privilege Vulnerability Windows LUAFV Elevation of Privilege Vulnerability
nvd
CVE-2021-26863P3HIGHCVSS 7.8≥ 10.0.0, < publication2021-03-11
CVE-2021-26863 [HIGH] CWE-269 CVE-2021-26863: Windows Win32k Elevation of Privilege Vulnerability Windows Win32k Elevation of Privilege Vulnerability
nvd
CVE-2021-43883P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.19041.14152021-12-15
CVE-2021-43883 [HIGH] CVE-2021-43883: Windows Installer Elevation of Privilege Vulnerability Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2020-17162P3HIGHCVSS 8.8≥ 10.0.0, < publication2021-02-25
CVE-2020-17162 [HIGH] CVE-2020-17162: Microsoft Windows Security Feature Bypass Vulnerability Microsoft Windows Security Feature Bypass Vulnerability
nvd
CVE-2020-17047P3HIGHCVSS 7.5≥ 10.0.0, < publication2020-11-11
CVE-2020-17047 [HIGH] CVE-2020-17047: Windows Network File System Denial of Service Vulnerability Windows Network File System Denial of Service Vulnerability
nvd
CVE-2021-43893P3HIGHCVSS 7.5≥ 10.0.0, < 10.0.19041.14152021-12-15
CVE-2021-43893 [HIGH] CWE-668 CVE-2021-43893: Windows Encrypting File System (EFS) Elevation of Privilege Vulnerability Windows Encrypting File System (EFS) Elevation of Privilege Vulnerability
nvd
CVE-2020-1031P3HIGHCVSS 7.5≥ 10.0.0, < publication2020-09-11
CVE-2020-1031 [HIGH] CVE-2020-1031: <p>An information disclosure vulnerability exists in the way that the Windows Server DHCP service im An information disclosure vulnerability exists in the way that the Windows Server DHCP service improperly discloses the contents of its memory. To exploit the vulnerability, an unauthenticated attacker could send a specially crafted packet to an affected DHCP server. An attacker who successfully exploited this vulnerability could obtain information to further c
nvd
CVE-2020-1525P3HIGHCVSS 8.8≥ 10.0.0, < publication2020-08-17
CVE-2020-1525 [HIGH] CWE-787 CVE-2020-1525: A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in memory. An attacker who successfully exploited the vulnerability could install programs; view, change, or delete data; or create new accounts with full user rights. There are multiple ways an attacker could exploit the vulnerability, such as by convincin
nvd
CVE-2021-33754P3HIGHCVSS 8.0≥ 10.0.0, < 10.0.19041.11102021-07-14
CVE-2021-33754 [HIGH] CVE-2021-33754: Windows DNS Server Remote Code Execution Vulnerability Windows DNS Server Remote Code Execution Vulnerability
nvd
CVE-2021-34442P3HIGHCVSS 7.5≥ 10.0.0, < 10.0.19041.11102021-07-16
CVE-2021-34442 [HIGH] CVE-2021-34442: Windows DNS Server Remote Code Execution Vulnerability Windows DNS Server Remote Code Execution Vulnerability
nvd
CVE-2021-26882P3HIGHCVSS 7.8≥ 10.0.0, < publication2021-03-11
CVE-2021-26882 [HIGH] CVE-2021-26882: Remote Access API Elevation of Privilege Vulnerability Remote Access API Elevation of Privilege Vulnerability
nvd
CVE-2020-16927P3HIGHCVSS 7.5≥ 10.0.0, < publication2020-10-16
CVE-2020-16927 [HIGH] CVE-2020-16927: <p>A denial of service vulnerability exists in Remote Desktop Protocol (RDP) when an attacker connec A denial of service vulnerability exists in Remote Desktop Protocol (RDP) when an attacker connects to the target system using RDP and sends specially crafted requests. An attacker who successfully exploited this vulnerability could cause the RDP service on the target system to stop responding. To exploit this vulnerability, an attacker would need to run a sp
nvd
CVE-2021-43233P3HIGHCVSS 7.5≥ 10.0.0, < 10.0.19041.14152021-12-15
CVE-2021-43233 [HIGH] CVE-2021-43233: Remote Desktop Client Remote Code Execution Vulnerability Remote Desktop Client Remote Code Execution Vulnerability
nvd
CVE-2021-40456P3HIGHCVSS 7.5≥ 10.0.0, < 10.0.19041.12882021-10-13
CVE-2021-40456 [HIGH] CWE-863 CVE-2021-40456: Windows AD FS Security Feature Bypass Vulnerability Windows AD FS Security Feature Bypass Vulnerability
nvd
Microsoft Windows Server Version 2004 vulnerabilities | cvebase