VYPR

Windows Server 2008

by Microsoft

CVEs (3,572)

  • CVE-2017-8486MedJul 11, 2017
    risk 0.31cvss 4.7epss 0.02

    Microsoft Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an information disclosure due to the way it handles objects in memory, aka "Win32k…

  • CVE-2017-8554MedJun 29, 2017
    risk 0.31cvss 4.7epss 0.02

    The kernel in Microsoft Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows an authenticated attacker to obtain memory contents via a specially…

  • CVE-2017-8553MedJun 15, 2017
    risk 0.31cvss 4.7epss 0.03

    An information disclosure vulnerability exists in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows Server 2016 when the Windows kernel improperly handles objects in memory, aka "GDI Information Disclosure…

  • CVE-2017-0073MedMar 17, 2017
    risk 0.31cvss 4.3epss 0.33

    The Graphics Device Interface (GDI) in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; and Windows 10 Gold, 1511, and 1607 allows remote attackers to obtain sensitive information from…

  • CVE-2016-7218MedNov 10, 2016
    risk 0.31cvss 4.7epss 0.03

    Bowser.sys in the kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, and 1607, and Windows Server 2016 allows local users to obtain sensitive…

  • CVE-2026-20834MedJan 13, 2026
    risk 0.30cvss 4.6epss 0.01

    Absolute path traversal in Windows Shell allows an unauthorized attacker to perform spoofing with a physical attack.

  • CVE-2026-20828MedJan 13, 2026
    risk 0.30cvss 4.6epss 0.01

    Out-of-bounds read in Windows Internet Connection Sharing (ICS) allows an unauthorized attacker to disclose information with a physical attack.

  • CVE-2025-21215MedJan 14, 2025
    risk 0.30cvss 4.6epss 0.01

    Secure Boot Security Feature Bypass Vulnerability

  • CVE-2024-21340MedFeb 13, 2024
    risk 0.30cvss 4.6epss 0.01

    Windows Kernel Information Disclosure Vulnerability

  • CVE-2022-21905MedJan 11, 2022
    risk 0.30cvss 4.6epss 0.01

    Windows Hyper-V Security Feature Bypass Vulnerability

  • CVE-2022-21900MedJan 11, 2022
    risk 0.30cvss 4.6epss 0.01

    Windows Hyper-V Security Feature Bypass Vulnerability

  • CVE-2023-36722MedOct 10, 2023
    risk 0.29cvss 4.4epss 0.01

    Active Directory Domain Services Information Disclosure Vulnerability

  • CVE-2023-28276MedApr 11, 2023
    risk 0.29cvss 4.4epss 0.00

    Windows Group Policy Security Feature Bypass Vulnerability

  • CVE-2021-41371MedNov 10, 2021
    risk 0.29cvss 4.4epss 0.02

    Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability

  • CVE-2021-38631MedNov 10, 2021
    risk 0.29cvss 4.4epss 0.02

    Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability

  • CVE-2020-1589MedSep 11, 2020
    risk 0.29cvss 4.4epss 0.01

    An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory. An attacker who successfully exploited this vulnerability could obtain information to further compromise the user’s system. To exploit this vulnerability, an…

  • CVE-2019-0941MedJun 12, 2019
    risk 0.29cvss 4.4epss 0.03

    A denial of service exists in Microsoft IIS Server when the optional request filtering feature improperly handles requests. An attacker who successfully exploited this vulnerability could perform a temporary denial of service against pages configured to use request filtering. To…

  • CVE-2019-0839MedApr 9, 2019
    risk 0.29cvss 4.4epss 0.02

    An information disclosure vulnerability exists when the Terminal Services component improperly discloses the contents of its memory, aka 'Windows Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-0838.

  • CVE-2016-0008MedJan 13, 2016
    risk 0.29cvss 4.3epss 0.14

    The graphics device interface in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows remote attackers to bypass the ASLR protection mechanism via unspecified…

  • CVE-2026-20936MedJan 13, 2026
    risk 0.28cvss 4.3epss 0.00

    Out-of-bounds read in Windows NDIS allows an authorized attacker to disclose information with a physical attack.

Page 149 of 179