VYPR

Windows Server 2008

by Microsoft

CVEs (3,572)

  • CVE-2021-28316MedApr 13, 2021
    risk 0.27cvss 4.2epss 0.01

    Windows WLAN AutoConfig Service Security Feature Bypass Vulnerability

  • CVE-2025-29839MedMay 13, 2025
    risk 0.26cvss 4.0epss 0.00

    Out-of-bounds read in Windows File Server allows an unauthorized attacker to disclose information locally.

  • CVE-2018-0878LowMar 14, 2018
    risk 0.25cvss 3.1epss 0.21

    Windows Remote Assistance in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and 1709, Windows Server 2016 and Windows Server, version 1709 allows an information disclosure…

  • CVE-2020-24588LowMay 11, 2021
    risk 0.23cvss 3.5epss 0.04

    The 802.11 standard that underpins Wi-Fi Protected Access (WPA, WPA2, and WPA3) and Wired Equivalent Privacy (WEP) doesn't require that the A-MSDU flag in the plaintext QoS header field is authenticated. Against devices that support receiving non-SSP A-MSDU frames (which is…

  • CVE-2017-8676LowSep 13, 2017
    risk 0.23cvss 3.3epss 0.14

    The Windows Graphics Device Interface (GDI) in Microsoft Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; Windows 10 Gold, 1511, 1607, 1703, and Server 2016; Office 2007 SP3; Office 2010 SP2; Word Viewer; Office for…

  • CVE-2017-0042LowMar 17, 2017
    risk 0.23cvss 3.1epss 0.30

    Windows Media Player in Microsoft Windows 8.1; Windows Server 2012 R2; Windows RT 8.1; Windows 7 SP1; Windows 2008 SP2 and R2 SP1, Windows Server 2016; Windows Vista SP2; and Windows 10 Gold, 1511, and 1607 allows remote attackers to obtain sensitive information via a crafted…

  • CVE-2016-3354LowSep 14, 2016
    risk 0.23cvss 3.3epss 0.14

    The Graphics Device Interface (GDI) in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold, 1511, and 1607 allows local users to bypass the ASLR protection mechanism via…

  • CVE-2016-3251LowJul 13, 2016
    risk 0.23cvss 2.8epss 0.58

    The GDI component in the kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 allows local users to obtain sensitive kernel-address…

  • CVE-2019-1488LowDec 10, 2019
    risk 0.22cvss 3.3epss 0.01

    A security feature bypass vulnerability exists when Microsoft Defender improperly handles specific buffers, aka 'Microsoft Defender Security Feature Bypass Vulnerability'.

  • CVE-2019-1418LowNov 12, 2019
    risk 0.22cvss 3.3epss 0.02

    An information vulnerability exists when Windows Modules Installer Service improperly discloses file information, aka 'Windows Modules Installer Service Information Disclosure Vulnerability'.

  • CVE-2016-7214LowNov 10, 2016
    risk 0.22cvss 3.3epss 0.04

    The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, and 1607, and Windows Server 2016 allow local users to bypass the ASLR protection…

  • CVE-2016-0175LowMay 11, 2016
    risk 0.22cvss 3.3epss 0.04

    The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 allow local users to obtain sensitive information about kernel-object addresses,…

  • CVE-2025-21337LowFeb 11, 2025
    risk 0.21cvss 3.3epss 0.01

    Windows NTFS Elevation of Privilege Vulnerability

  • CVE-2022-38022LowOct 11, 2022
    risk 0.21cvss 3.3epss 0.01

    Windows Kernel Elevation of Privilege Vulnerability

  • CVE-2018-8482LowOct 10, 2018
    risk 0.21cvss 3.1epss 0.05

    An information disclosure vulnerability exists when Windows Media Player improperly discloses file information, aka "Windows Media Player Information Disclosure Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server…

  • CVE-2018-8481LowOct 10, 2018
    risk 0.21cvss 3.1epss 0.05

    An information disclosure vulnerability exists when Windows Media Player improperly discloses file information, aka "Windows Media Player Information Disclosure Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server…

  • CVE-2025-59280LowOct 14, 2025
    risk 0.20cvss 3.1epss 0.00

    Improper authentication in Windows SMB Client allows an unauthorized attacker to perform tampering over a network.

  • CVE-2017-0096LowMar 17, 2017
    risk 0.17cvss 2.6epss 0.02

    Hyper-V in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2; Windows 7 SP1; Windows 8.1, Windows Server 2012 Gold and R2; Windows 10 Gold, 1511, and 1607; and Windows Server 2016 allows guest OS users to obtain sensitive information from host OS memory via a crafted…

  • CVE-2015-6132Dec 9, 2015
    risk 0.10cvss epss 0.85

    Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 Gold and 1511 mishandle library loading, which allows local users to gain privileges via a crafted…

  • CVE-2015-6128Dec 9, 2015
    risk 0.10cvss epss 0.82

    Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, and Windows 7 SP1 mishandle library loading, which allows local users to gain privileges via a crafted application, aka "Windows Library Loading Remote Code Execution Vulnerability."

Page 151 of 179