Microsoft Windows Server Version 20H2 vulnerabilities

966 known vulnerabilities affecting microsoft/windows_server_version_20h2.

Total CVEs
966
CISA KEV
39
actively exploited
Public exploits
17
Exploited in wild
44
Severity breakdown
CRITICAL44HIGH690MEDIUM229LOW3

Vulnerabilities

Page 33 of 49
CVE-2021-33745MEDIUMCVSS 6.5≥ 10.0.0, < 10.0.19042.11102021-07-14
CVE-2021-33745 [MEDIUM] CVE-2021-33745: Windows DNS Server Denial of Service Vulnerability Windows DNS Server Denial of Service Vulnerability
nvd
CVE-2021-34499MEDIUMCVSS 6.5≥ 10.0.0, < 10.0.19042.11102021-07-14
CVE-2021-34499 [MEDIUM] CVE-2021-34499: Windows DNS Server Denial of Service Vulnerability Windows DNS Server Denial of Service Vulnerability
nvd
CVE-2021-34496MEDIUMCVSS 5.5≥ 10.0.0, < 10.0.19042.11102021-07-14
CVE-2021-34496 [MEDIUM] Windows GDI Information Disclosure Vulnerability Windows GDI Information Disclosure Vulnerability Windows GDI Information Disclosure Vulnerability
cvelistv5
CVE-2021-34527HIGHCVSS 8.8KEVPoC≥ 10.0.0, < 10.0.19042.10832021-07-02
CVE-2021-34527 [HIGH] CVE-2021-34527: <p>A remote code execution vulnerability exists when the Windows Print Spooler service improperly pe A remote code execution vulnerability exists when the Windows Print Spooler service improperly performs privileged file operations. An attacker who successfully exploited this vulnerability could run arbitrary code with SYSTEM privileges. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. UPDAT
nvd
CVE-2021-31962CRITICALCVSS 9.8≥ 10.0.0, < 10.0.19042.10522021-06-08
CVE-2021-31962 [CRITICAL] CVE-2021-31962: Kerberos AppContainer Security Feature Bypass Vulnerability Kerberos AppContainer Security Feature Bypass Vulnerability
nvd
CVE-2021-31968HIGHCVSS 7.5≥ 10.0.0, < 10.0.19042.10522021-06-08
CVE-2021-31968 [HIGH] CVE-2021-31968: Windows Remote Desktop Services Denial of Service Vulnerability Windows Remote Desktop Services Denial of Service Vulnerability
nvd
CVE-2021-31958HIGHCVSS 7.5≥ 10.0.0, < 10.0.19042.10522021-06-08
CVE-2021-31958 [HIGH] Windows NTLM Elevation of Privilege Vulnerability Windows NTLM Elevation of Privilege Vulnerability Windows NTLM Elevation of Privilege Vulnerability
cvelistv5
CVE-2021-31951HIGHCVSS 7.8≥ 10.0.0, < 10.0.19042.10522021-06-08
CVE-2021-31951 [HIGH] CVE-2021-31951: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2021-31973HIGHCVSS 7.8≥ 10.0.0, < 10.0.19042.10522021-06-08
CVE-2021-31973 [HIGH] CVE-2021-31973: Windows GPSVC Elevation of Privilege Vulnerability Windows GPSVC Elevation of Privilege Vulnerability
nvd
CVE-2021-31977HIGHCVSS 8.6≥ 10.0.0, < 10.0.19042.10522021-06-08
CVE-2021-31977 [HIGH] Windows Hyper-V Denial of Service Vulnerability Windows Hyper-V Denial of Service Vulnerability Windows Hyper-V Denial of Service Vulnerability
cvelistv5
CVE-2021-31954HIGHCVSS 7.8≥ 10.0.0, < 10.0.19042.10522021-06-08
CVE-2021-31954 [HIGH] CWE-269 CVE-2021-31954: Windows Common Log File System Driver Elevation of Privilege Vulnerability Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2021-1675HIGHCVSS 7.8KEVPoC≥ 10.0.0, < 10.0.19042.10522021-06-08
CVE-2021-1675 [HIGH] CVE-2021-1675: Windows Print Spooler Remote Code Execution Vulnerability Windows Print Spooler Remote Code Execution Vulnerability
nvd
CVE-2021-31974HIGHCVSS 7.5≥ 10.0.0, < 10.0.19042.10522021-06-08
CVE-2021-31974 [HIGH] Server for NFS Denial of Service Vulnerability Server for NFS Denial of Service Vulnerability Server for NFS Denial of Service Vulnerability
cvelistv5
CVE-2021-33739HIGHCVSS 7.8KEV≥ 10.0.0, < 10.0.19042.10522021-06-08
CVE-2021-33739 [HIGH] CVE-2021-33739: Microsoft DWM Core Library Elevation of Privilege Vulnerability Microsoft DWM Core Library Elevation of Privilege Vulnerability
nvd
CVE-2021-31199HIGHCVSS 7.8KEV≥ 10.0.0, < 10.0.19042.10522021-06-08
CVE-2021-31199 [HIGH] CVE-2021-31199: Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability
nvd
CVE-2021-31969HIGHCVSS 7.8≥ 10.0.0, < 10.0.19042.10522021-06-08
CVE-2021-31969 [HIGH] CWE-269 CVE-2021-31969: Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
nvd
CVE-2021-31952HIGHCVSS 7.8≥ 10.0.0, < 10.0.19042.10522021-06-08
CVE-2021-31952 [HIGH] CVE-2021-31952: Windows Kernel-Mode Driver Elevation of Privilege Vulnerability Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
nvd
CVE-2021-31976HIGHCVSS 7.5≥ 10.0.0, < 10.0.19042.10522021-06-08
CVE-2021-31976 [HIGH] CVE-2021-31976: Server for NFS Information Disclosure Vulnerability Server for NFS Information Disclosure Vulnerability
nvd
CVE-2021-31956HIGHCVSS 7.8KEV≥ 10.0.0, < 10.0.19042.10522021-06-08
CVE-2021-31956 [HIGH] Windows NTFS Elevation of Privilege Vulnerability Windows NTFS Elevation of Privilege Vulnerability Windows NTFS Elevation of Privilege Vulnerability
cvelistv5
CVE-2021-31201HIGHCVSS 7.8KEV≥ 10.0.0, < 10.0.19042.10522021-06-08
CVE-2021-31201 [HIGH] CVE-2021-31201: Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability
nvd