Windows Server 2008
by Microsoft
CVEs (3,572)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2025-55695 | Med | 0.36 | 5.5 | 0.00 | Oct 14, 2025 | Out-of-bounds read in Windows WLAN Auto Config Service allows an authorized attacker to disclose information locally. | ||
| CVE-2025-53799 | Med | 0.36 | 5.5 | 0.01 | Sep 9, 2025 | Use of uninitialized resource in Windows Imaging Component allows an unauthorized attacker to disclose information locally. | ||
| CVE-2025-53136 | Med | 0.36 | 5.5 | 0.01 | Aug 12, 2025 | Exposure of sensitive information to an unauthorized actor in Windows NT OS Kernel allows an authorized attacker to disclose information locally. | ||
| CVE-2025-49664 | Med | 0.36 | 5.5 | 0.01 | Jul 8, 2025 | Exposure of sensitive information to an unauthorized actor in Windows User-Mode Driver Framework Host allows an authorized attacker to disclose information locally. | ||
| CVE-2025-49658 | Med | 0.36 | 5.5 | 0.00 | Jul 8, 2025 | Out-of-bounds read in Windows TDX.sys allows an authorized attacker to disclose information locally. | ||
| CVE-2025-48808 | Med | 0.36 | 5.5 | 0.00 | Jul 8, 2025 | Exposure of sensitive information to an unauthorized actor in Windows Kernel allows an authorized attacker to disclose information locally. | ||
| CVE-2025-29837 | Med | 0.36 | 5.5 | 0.01 | May 13, 2025 | Improper link resolution before file access ('link following') in Windows Installer allows an authorized attacker to disclose information locally. | ||
| CVE-2025-27742 | Med | 0.36 | 5.5 | 0.01 | Apr 8, 2025 | Out-of-bounds read in Windows NTFS allows an unauthorized attacker to disclose information locally. | ||
| CVE-2025-24992 | Med | 0.36 | 5.5 | 0.01 | Mar 11, 2025 | Buffer over-read in Windows NTFS allows an unauthorized attacker to disclose information locally. | ||
| CVE-2025-21336 | Med | 0.36 | 5.6 | 0.01 | Jan 14, 2025 | Windows Cryptographic Information Disclosure Vulnerability | ||
| CVE-2025-21320 | Med | 0.36 | 5.5 | 0.01 | Jan 14, 2025 | Windows Kernel Memory Information Disclosure Vulnerability | ||
| CVE-2025-21319 | Med | 0.36 | 5.5 | 0.01 | Jan 14, 2025 | Windows Kernel Memory Information Disclosure Vulnerability | ||
| CVE-2024-38256 | Med | 0.36 | 5.5 | 0.01 | Sep 10, 2024 | Windows Kernel-Mode Driver Information Disclosure Vulnerability | ||
| CVE-2024-38151 | Med | 0.36 | 5.5 | 0.01 | Aug 13, 2024 | Windows Kernel Information Disclosure Vulnerability | ||
| CVE-2024-38122 | Med | 0.36 | 5.5 | 0.01 | Aug 13, 2024 | Microsoft Local Security Authority (LSA) Server Information Disclosure Vulnerability | ||
| CVE-2024-38118 | Med | 0.36 | 5.5 | 0.01 | Aug 13, 2024 | Microsoft Local Security Authority (LSA) Server Information Disclosure Vulnerability | ||
| CVE-2024-38055 | Med | 0.36 | 5.5 | 0.01 | Jul 9, 2024 | Microsoft Windows Codecs Library Information Disclosure Vulnerability | ||
| CVE-2024-38017 | Med | 0.36 | 5.5 | 0.01 | Jul 9, 2024 | Microsoft Message Queuing Information Disclosure Vulnerability | ||
| CVE-2024-30050 | Med | 0.36 | 5.4 | 0.11 | May 14, 2024 | Windows Mark of the Web Security Feature Bypass Vulnerability | ||
| CVE-2024-30039 | Med | 0.36 | 5.5 | 0.01 | May 14, 2024 | Windows Remote Access Connection Manager Information Disclosure Vulnerability |
- risk 0.36cvss 5.5epss 0.00
Out-of-bounds read in Windows WLAN Auto Config Service allows an authorized attacker to disclose information locally.
- risk 0.36cvss 5.5epss 0.01
Use of uninitialized resource in Windows Imaging Component allows an unauthorized attacker to disclose information locally.
- risk 0.36cvss 5.5epss 0.01
Exposure of sensitive information to an unauthorized actor in Windows NT OS Kernel allows an authorized attacker to disclose information locally.
- risk 0.36cvss 5.5epss 0.01
Exposure of sensitive information to an unauthorized actor in Windows User-Mode Driver Framework Host allows an authorized attacker to disclose information locally.
- risk 0.36cvss 5.5epss 0.00
Out-of-bounds read in Windows TDX.sys allows an authorized attacker to disclose information locally.
- risk 0.36cvss 5.5epss 0.00
Exposure of sensitive information to an unauthorized actor in Windows Kernel allows an authorized attacker to disclose information locally.
- risk 0.36cvss 5.5epss 0.01
Improper link resolution before file access ('link following') in Windows Installer allows an authorized attacker to disclose information locally.
- risk 0.36cvss 5.5epss 0.01
Out-of-bounds read in Windows NTFS allows an unauthorized attacker to disclose information locally.
- risk 0.36cvss 5.5epss 0.01
Buffer over-read in Windows NTFS allows an unauthorized attacker to disclose information locally.
- risk 0.36cvss 5.6epss 0.01
Windows Cryptographic Information Disclosure Vulnerability
- risk 0.36cvss 5.5epss 0.01
Windows Kernel Memory Information Disclosure Vulnerability
- risk 0.36cvss 5.5epss 0.01
Windows Kernel Memory Information Disclosure Vulnerability
- risk 0.36cvss 5.5epss 0.01
Windows Kernel-Mode Driver Information Disclosure Vulnerability
- risk 0.36cvss 5.5epss 0.01
Windows Kernel Information Disclosure Vulnerability
- risk 0.36cvss 5.5epss 0.01
Microsoft Local Security Authority (LSA) Server Information Disclosure Vulnerability
- risk 0.36cvss 5.5epss 0.01
Microsoft Local Security Authority (LSA) Server Information Disclosure Vulnerability
- risk 0.36cvss 5.5epss 0.01
Microsoft Windows Codecs Library Information Disclosure Vulnerability
- risk 0.36cvss 5.5epss 0.01
Microsoft Message Queuing Information Disclosure Vulnerability
- risk 0.36cvss 5.4epss 0.11
Windows Mark of the Web Security Feature Bypass Vulnerability
- risk 0.36cvss 5.5epss 0.01
Windows Remote Access Connection Manager Information Disclosure Vulnerability
Page 129 of 179