VYPR

Windows Server 2019

by Microsoft

CVEs (4,947)

  • CVE-2021-24077CriFeb 25, 2021
    risk 0.64cvss 9.8epss 0.03

    Windows Fax Service Remote Code Execution Vulnerability

  • CVE-2020-17051CriNov 11, 2020
    risk 0.64cvss 9.8epss 0.11

    Windows Network File System Remote Code Execution Vulnerability

  • CVE-2020-0986HigKEVJun 9, 2020
    risk 0.64cvss 7.8epss 0.16

    An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka 'Windows Kernel Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1237, CVE-2020-1246, CVE-2020-1262, CVE-2020-1264, CVE-2020-1266,…

  • CVE-2020-0690CriMar 12, 2020
    risk 0.64cvss 9.8epss 0.07

    An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka 'DirectX Elevation of Privilege Vulnerability'.

  • CVE-2019-1226CriAug 14, 2019
    risk 0.64cvss 9.8epss 0.08

    A remote code execution vulnerability exists in Remote Desktop Services – formerly known as Terminal Services – when an unauthenticated attacker connects to the target system using RDP and sends specially crafted requests. This vulnerability is pre-authentication and…

  • CVE-2019-1222CriAug 14, 2019
    risk 0.64cvss 9.8epss 0.08

    A remote code execution vulnerability exists in Remote Desktop Services – formerly known as Terminal Services – when an unauthenticated attacker connects to the target system using RDP and sends specially crafted requests. This vulnerability is pre-authentication and…

  • CVE-2019-1212CriAug 14, 2019
    risk 0.64cvss 9.8epss 0.07

    A memory corruption vulnerability exists in the Windows Server DHCP service when processing specially crafted packets. An attacker who successfully exploited the vulnerability could cause the DHCP server service to stop responding. To exploit the vulnerability, a remote…

  • CVE-2019-0786CriApr 9, 2019
    risk 0.64cvss 9.8epss 0.07

    An elevation of privilege vulnerability exists in the Microsoft Server Message Block (SMB) Server when an attacker with valid credentials attempts to open a specially crafted file over the SMB protocol on the same machine, aka 'SMB Server Elevation of Privilege Vulnerability'.

  • CVE-2018-8544HigNov 14, 2018
    risk 0.64cvss 8.8epss 0.48

    A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka "Windows VBScript Engine Remote Code Execution Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server…

  • CVE-2026-21533HigKEVFeb 10, 2026
    risk 0.63cvss 7.8epss 0.04

    Improper privilege management in Windows Remote Desktop allows an authorized attacker to elevate privileges locally.

  • CVE-2026-21519HigKEVFeb 10, 2026
    risk 0.63cvss 7.8epss 0.02

    Access of resource using incompatible type ('type confusion') in Desktop Window Manager allows an authorized attacker to elevate privileges locally.

  • CVE-2025-62221HigKEVDec 9, 2025
    risk 0.63cvss 7.8epss 0.02

    Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.

  • CVE-2025-59230HigKEVOct 14, 2025
    risk 0.63cvss 7.8epss 0.03

    Improper access control in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges locally.

  • CVE-2025-24990HigKEVOct 14, 2025
    risk 0.63cvss 7.8epss 0.06

    Microsoft is aware of vulnerabilities in the third party Agere Modem driver that ships natively with supported Windows operating systems. This is an announcement of the upcoming removal of ltmdm64.sys driver. The driver has been removed in the October cumulative update. Fax…

  • CVE-2025-32709HigKEVMay 13, 2025
    risk 0.63cvss 7.8epss 0.02

    Null pointer dereference in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

  • CVE-2025-32706HigKEVMay 13, 2025
    risk 0.63cvss 7.8epss 0.02

    Improper input validation in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.

  • CVE-2025-32701HigKEVMay 13, 2025
    risk 0.63cvss 7.8epss 0.01

    Use after free in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.

  • CVE-2025-30400HigKEVMay 13, 2025
    risk 0.63cvss 7.8epss 0.02

    Use after free in Windows DWM allows an authorized attacker to elevate privileges locally.

  • CVE-2025-24993HigKEVMar 11, 2025
    risk 0.63cvss 7.8epss 0.02

    Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.

  • CVE-2025-24985HigKEVMar 11, 2025
    risk 0.63cvss 7.8epss 0.04

    Integer overflow or wraparound in Windows Fast FAT Driver allows an unauthorized attacker to execute code locally.

Page 10 of 248