Windows Server 20h2
by Microsoft
CVEs (52)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2021-36948 | Hig | 0.64 | 7.8 | 0.23 | KEV | Aug 12, 2021 | Windows Update Medic Service Elevation of Privilege Vulnerability | |
| CVE-2021-34484 | Hig | 0.64 | 7.8 | 0.22 | KEV | Aug 12, 2021 | Windows User Profile Service Elevation of Privilege Vulnerability | |
| CVE-2021-31956 | Hig | 0.64 | 7.8 | 0.22 | KEV | Jun 8, 2021 | Windows NTFS Elevation of Privilege Vulnerability | |
| CVE-2021-41357 | Hig | 0.63 | 7.8 | 0.02 | KEV | Oct 13, 2021 | Win32k Elevation of Privilege Vulnerability | |
| CVE-2021-40450 | Hig | 0.63 | 7.8 | 0.02 | KEV | Oct 13, 2021 | Win32k Elevation of Privilege Vulnerability | |
| CVE-2021-34486 | Hig | 0.63 | 7.8 | 0.09 | KEV | Aug 12, 2021 | Windows Event Tracing Elevation of Privilege Vulnerability | |
| CVE-2021-33771 | Hig | 0.63 | 7.8 | 0.10 | KEV | Jul 14, 2021 | Windows Kernel Elevation of Privilege Vulnerability | |
| CVE-2021-31979 | Hig | 0.63 | 7.8 | 0.05 | KEV | Jul 14, 2021 | Windows Kernel Elevation of Privilege Vulnerability | |
| CVE-2021-28310 | Hig | 0.63 | 7.8 | 0.08 | KEV | Apr 13, 2021 | Win32k Elevation of Privilege Vulnerability | |
| CVE-2022-26904 | Hig | 0.61 | 7.0 | 0.10 | KEV | Apr 15, 2022 | Windows User Profile Service Elevation of Privilege Vulnerability | |
| CVE-2022-21919 | Hig | 0.58 | 7.0 | 0.03 | KEV | Jan 11, 2022 | Windows User Profile Service Elevation of Privilege Vulnerability | |
| CVE-2020-1472 | Med | 0.58 | 5.5 | 0.99 | KEV | Aug 17, 2020 | An elevation of privilege vulnerability exists when an attacker establishes a vulnerable Netlogon secure channel connection to a domain controller, using the Netlogon Remote Protocol (MS-NRPC). An attacker who successfully exploited the vulnerability could run a specially… | |
| CVE-2021-41379 | Med | 0.55 | 5.5 | 0.20 | KEV | Nov 10, 2021 | Windows Installer Elevation of Privilege Vulnerability | |
| CVE-2021-31955 | Med | 0.54 | 5.5 | 0.81 | KEV | Jun 8, 2021 | Windows Kernel Information Disclosure Vulnerability | |
| CVE-2022-35753 | Hig | 0.53 | 8.1 | 0.01 | May 31, 2023 | Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability | ||
| CVE-2022-35752 | Hig | 0.53 | 8.1 | 0.01 | May 31, 2023 | Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability | ||
| CVE-2022-35748 | Hig | 0.53 | 7.5 | 0.47 | May 31, 2023 | HTTP.sys Denial of Service Vulnerability | ||
| CVE-2022-35745 | Hig | 0.53 | 8.1 | 0.01 | May 31, 2023 | Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability | ||
| CVE-2022-35756 | Hig | 0.52 | 7.8 | 0.11 | May 31, 2023 | Windows Kerberos Elevation of Privilege Vulnerability | ||
| CVE-2022-35751 | Hig | 0.51 | 7.8 | 0.05 | May 31, 2023 | Windows Hyper-V Elevation of Privilege Vulnerability |
- risk 0.64cvss 7.8epss 0.23
Windows Update Medic Service Elevation of Privilege Vulnerability
- risk 0.64cvss 7.8epss 0.22
Windows User Profile Service Elevation of Privilege Vulnerability
- risk 0.64cvss 7.8epss 0.22
Windows NTFS Elevation of Privilege Vulnerability
- risk 0.63cvss 7.8epss 0.02
Win32k Elevation of Privilege Vulnerability
- risk 0.63cvss 7.8epss 0.02
Win32k Elevation of Privilege Vulnerability
- risk 0.63cvss 7.8epss 0.09
Windows Event Tracing Elevation of Privilege Vulnerability
- risk 0.63cvss 7.8epss 0.10
Windows Kernel Elevation of Privilege Vulnerability
- risk 0.63cvss 7.8epss 0.05
Windows Kernel Elevation of Privilege Vulnerability
- risk 0.63cvss 7.8epss 0.08
Win32k Elevation of Privilege Vulnerability
- risk 0.61cvss 7.0epss 0.10
Windows User Profile Service Elevation of Privilege Vulnerability
- risk 0.58cvss 7.0epss 0.03
Windows User Profile Service Elevation of Privilege Vulnerability
- risk 0.58cvss 5.5epss 0.99
An elevation of privilege vulnerability exists when an attacker establishes a vulnerable Netlogon secure channel connection to a domain controller, using the Netlogon Remote Protocol (MS-NRPC). An attacker who successfully exploited the vulnerability could run a specially…
- risk 0.55cvss 5.5epss 0.20
Windows Installer Elevation of Privilege Vulnerability
- risk 0.54cvss 5.5epss 0.81
Windows Kernel Information Disclosure Vulnerability
- risk 0.53cvss 8.1epss 0.01
Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability
- risk 0.53cvss 8.1epss 0.01
Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability
- risk 0.53cvss 7.5epss 0.47
HTTP.sys Denial of Service Vulnerability
- risk 0.53cvss 8.1epss 0.01
Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability
- risk 0.52cvss 7.8epss 0.11
Windows Kerberos Elevation of Privilege Vulnerability
- risk 0.51cvss 7.8epss 0.05
Windows Hyper-V Elevation of Privilege Vulnerability
Page 2 of 3