VYPR

Windows Server 2008

by Microsoft

CVEs (3,572)

  • CVE-2015-2387HigKEVJul 14, 2015
    risk 0.66cvss 7.8epss 0.35

    ATMFD.DLL in the Adobe Type Manager Font Driver in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows local users to gain privileges…

  • CVE-2010-4398HigKEVDec 6, 2010
    risk 0.66cvss 7.8epss 0.09

    Stack-based buffer overflow in the RtlQueryRegistryValues function in win32k.sys in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 allows local users to gain privileges, and bypass the…

  • CVE-2009-2512CriNov 11, 2009
    risk 0.66cvss 9.8epss 0.31

    The Web Services on Devices API (WSDAPI) in Windows Vista Gold, SP1, and SP2 and Server 2008 Gold and SP2 does not properly process the headers of WSD messages, which allows remote attackers to execute arbitrary code via a crafted (1) message or (2) response, aka "Web Services…

  • CVE-2025-47981CriJul 8, 2025
    risk 0.65cvss 9.8epss 0.32

    Heap-based buffer overflow in Windows SPNEGO Extended Negotiation allows an unauthorized attacker to execute code over a network.

  • CVE-2025-30397HigKEVMay 13, 2025
    risk 0.65cvss 7.5epss 0.27

    Access of resource using incompatible type ('type confusion') in Microsoft Scripting Engine allows an unauthorized attacker to execute code over a network.

  • CVE-2023-36397CriNov 14, 2023
    risk 0.65cvss 9.8epss 0.18

    Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability

  • CVE-2023-21692CriFeb 14, 2023
    risk 0.65cvss 9.8epss 0.21

    Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability

  • CVE-2022-37969HigKEVSep 13, 2022
    risk 0.65cvss 7.8epss 0.28

    Windows Common Log File System Driver Elevation of Privilege Vulnerability

  • CVE-2022-26925HigKEVMay 10, 2022
    risk 0.65cvss 8.1epss 0.11

    Windows LSA Spoofing Vulnerability

  • CVE-2021-33742HigKEVJun 8, 2021
    risk 0.65cvss 7.5epss 0.59

    Windows MSHTML Platform Remote Code Execution Vulnerability

  • CVE-2021-26897CriMar 11, 2021
    risk 0.65cvss 9.8epss 0.12

    Windows DNS Server Remote Code Execution Vulnerability

  • CVE-2021-26877CriMar 11, 2021
    risk 0.65cvss 9.8epss 0.17

    Windows DNS Server Remote Code Execution Vulnerability

  • CVE-2021-24094CriFeb 25, 2021
    risk 0.65cvss 9.8epss 0.22

    Windows TCP/IP Remote Code Execution Vulnerability

  • CVE-2021-24078CriFeb 25, 2021
    risk 0.65cvss 9.8epss 0.11

    Windows DNS Server Remote Code Execution Vulnerability

  • CVE-2020-1467CriAug 17, 2020
    risk 0.65cvss 10.0epss 0.04

    An elevation of privilege vulnerability exists when Windows improperly handles hard links. An attacker who successfully exploited this vulnerability could overwrite a targeted file leading to an elevated status. To exploit this vulnerability, an attacker would first have to log…

  • CVE-2020-1054HigKEVMay 21, 2020
    risk 0.65cvss 7.0epss 0.54

    An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode. An attacker could then install programs;…

  • CVE-2019-1384CriNov 12, 2019
    risk 0.65cvss 9.9epss 0.06

    A security feature bypass vulnerability exists where a NETLOGON message is able to obtain the session key and sign messages.To exploit this vulnerability, an attacker could send a specially crafted authentication request, aka 'Microsoft Windows Security Feature Bypass…

  • CVE-2019-1365CriOct 10, 2019
    risk 0.65cvss 9.9epss 0.04

    An elevation of privilege vulnerability exists when Microsoft IIS Server fails to check the length of a buffer prior to copying memory to it.An attacker who successfully exploited this vulnerability can allow an unprivileged function ran by the user to execute code in the…

  • CVE-2019-1182CriAug 14, 2019
    risk 0.65cvss 9.8epss 0.17

    A remote code execution vulnerability exists in Remote Desktop Services – formerly known as Terminal Services – when an unauthenticated attacker connects to the target system using RDP and sends specially crafted requests. This vulnerability is pre-authentication and…

  • CVE-2017-0089HigMar 17, 2017
    risk 0.65cvss 8.8epss 0.57

    Uniscribe in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, and Windows 7 SP1 allows remote attackers to execute arbitrary code via a crafted web site, aka "Uniscribe Remote Code Execution Vulnerability." This vulnerability is different from those described in…

Page 7 of 179