VYPR

Windows Server 2019

by Microsoft

CVEs (4,947)

  • CVE-2018-8471HigNov 14, 2018
    risk 0.51cvss 7.8epss 0.02

    An elevation of privilege vulnerability exists in the way that the Microsoft RemoteFX Virtual GPU miniport driver handles objects in memory, aka "Microsoft RemoteFX Virtual GPU miniport driver Elevation of Privilege Vulnerability." This affects Windows Server 2016, Windows 10,…

  • CVE-2018-8415HigNov 14, 2018
    risk 0.51cvss 7.8epss 0.02

    A tampering vulnerability exists in PowerShell that could allow an attacker to execute unlogged code, aka "Microsoft PowerShell Tampering Vulnerability." This affects Windows 7, PowerShell Core 6.1, Windows Server 2012 R2, Windows RT 8.1, PowerShell Core 6.0, Windows Server…

  • CVE-2018-8497HigOct 10, 2018
    risk 0.51cvss 7.8epss 0.01

    An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects in memory, aka "Windows Kernel Elevation of Privilege Vulnerability." This affects Windows Server 2016, Windows 10, Windows Server 2019, Windows 10 Servers.

  • CVE-2018-8484HigOct 10, 2018
    risk 0.51cvss 7.8epss 0.02

    An elevation of privilege vulnerability exists when the DirectX Graphics Kernel (DXGKRNL) driver improperly handles objects in memory, aka "DirectX Graphics Kernel Elevation of Privilege Vulnerability." This affects Windows Server 2012 R2, Windows RT 8.1, Windows Server 2012,…

  • CVE-2013-3900MedKEVDec 11, 2013
    risk 0.51cvss 5.5epss 0.45

    Why is Microsoft republishing a CVE from 2013? We are republishing CVE-2013-3900 in the Security Update Guide to update the Security Updates table and to inform customers that the EnableCertPaddingCheck is available in all currently supported versions of Windows 10 and Windows…

  • CVE-2026-27913HigApr 14, 2026
    risk 0.50cvss 7.7epss 0.00

    Improper input validation in Windows BitLocker allows an unauthorized attacker to bypass a security feature locally.

  • CVE-2026-20852HigJan 13, 2026
    risk 0.50cvss 7.7epss 0.01

    Incorrect privilege assignment in Windows Hello allows an unauthorized attacker to perform tampering locally.

  • CVE-2026-20804HigJan 13, 2026
    risk 0.50cvss 7.7epss 0.01

    Incorrect privilege assignment in Windows Hello allows an unauthorized attacker to perform tampering locally.

  • CVE-2025-59200HigOct 14, 2025
    risk 0.50cvss 7.7epss 0.01

    Concurrent execution using shared resource with improper synchronization ('race condition') in Data Sharing Service Client allows an unauthorized attacker to perform spoofing locally.

  • CVE-2025-53722HigAug 12, 2025
    risk 0.50cvss 7.5epss 0.18

    Uncontrolled resource consumption in Windows Remote Desktop Services allows an unauthorized attacker to deny service over a network.

  • CVE-2025-47984HigJul 8, 2025
    risk 0.50cvss 7.5epss 0.16

    Protection mechanism failure in Windows GDI allows an unauthorized attacker to disclose information over a network.

  • CVE-2025-29833HigMay 13, 2025
    risk 0.50cvss 7.7epss 0.00

    Time-of-check time-of-use (toctou) race condition in Windows Virtual Machine Bus allows an unauthorized attacker to execute code locally.

  • CVE-2023-50387HigFeb 14, 2024
    risk 0.50cvss 7.5epss 1.00

    Certain DNSSEC aspects of the DNS protocol (in RFC 4033, 4034, 4035, 6840, and related RFCs) allow remote attackers to cause a denial of service (CPU consumption) via one or more DNSSEC responses, aka the "KeyTrap" issue. One of the concerns is that, when there is a zone with…

  • CVE-2023-38162HigSep 12, 2023
    risk 0.50cvss 7.5epss 0.10

    DHCP Server Service Denial of Service Vulnerability

  • CVE-2021-40463HigOct 13, 2021
    risk 0.50cvss 7.7epss 0.03

    Windows Network Address Translation (NAT) Denial of Service Vulnerability

  • CVE-2021-26416HigApr 13, 2021
    risk 0.50cvss 7.7epss 0.04

    Windows Hyper-V Denial of Service Vulnerability

  • CVE-2021-1692HigJan 12, 2021
    risk 0.50cvss 7.7epss 0.04

    Windows Hyper-V Denial of Service Vulnerability

  • CVE-2021-1638HigJan 12, 2021
    risk 0.50cvss 7.7epss 0.01

    Microsoft is aware of the "Impersonation in the Passkey Entry Protocol" vulnerability. For more information regarding the vulnerability, please see this statement from the Bluetooth SIG. To address the vulnerability, Microsoft has released a software update that…

  • CVE-2020-17096HigDec 10, 2020
    risk 0.50cvss 7.5epss 0.18

    Windows NTFS Remote Code Execution Vulnerability

  • CVE-2020-16997HigNov 11, 2020
    risk 0.50cvss 7.7epss 0.04

    Remote Desktop Protocol Server Information Disclosure Vulnerability

Page 130 of 248