Windows Server 2019
by Microsoft
CVEs (4,947)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2021-42284 | Med | 0.44 | 6.8 | 0.04 | Nov 10, 2021 | Windows Hyper-V Denial of Service Vulnerability | ||
| CVE-2021-42274 | Med | 0.44 | 6.8 | 0.01 | Nov 10, 2021 | Windows Hyper-V Discrete Device Assignment (DDA) Denial of Service Vulnerability | ||
| CVE-2021-41342 | Med | 0.44 | 6.8 | 0.02 | Oct 13, 2021 | Windows MSHTML Platform Remote Code Execution Vulnerability | ||
| CVE-2021-34534 | Med | 0.44 | 6.8 | 0.02 | Aug 12, 2021 | Windows MSHTML Platform Remote Code Execution Vulnerability | ||
| CVE-2021-34447 | Med | 0.44 | 6.8 | 0.02 | Jul 16, 2021 | Windows MSHTML Platform Remote Code Execution Vulnerability | ||
| CVE-2021-34497 | Med | 0.44 | 6.8 | 0.02 | Jul 14, 2021 | Windows MSHTML Platform Remote Code Execution Vulnerability | ||
| CVE-2021-34493 | Med | 0.44 | 6.7 | 0.01 | Jul 14, 2021 | Windows Partition Management Driver Elevation of Privilege Vulnerability | ||
| CVE-2021-31971 | Med | 0.44 | 6.8 | 0.02 | Jun 8, 2021 | Windows HTML Platforms Security Feature Bypass Vulnerability | ||
| CVE-2021-27092 | Med | 0.44 | 6.8 | 0.03 | Apr 13, 2021 | Azure AD Web Sign-in Security Feature Bypass Vulnerability | ||
| CVE-2020-17099 | Med | 0.44 | 6.8 | 0.01 | Dec 10, 2020 | Windows Lock Screen Security Feature Bypass Vulnerability | ||
| CVE-2020-17049 | Med | 0.44 | 6.6 | 0.14 | Nov 11, 2020 | A security feature bypass vulnerability exists in the way Key Distribution Center (KDC) determines if a service ticket can be used for delegation via Kerberos Constrained Delegation (KCD). To exploit the vulnerability, a compromised service that is configured to use KCD could… | ||
| CVE-2020-16905 | Med | 0.44 | 6.8 | 0.01 | Oct 16, 2020 | An elevation of privilege vulnerability exists in Windows Error Reporting (WER) when WER handles and executes files. The vulnerability could allow elevation of privilege if an attacker can successfully exploit it. An attacker who successfully exploited the… | ||
| CVE-2020-0951 | Med | 0.44 | 6.7 | 0.07 | Sep 11, 2020 | A security feature bypass vulnerability exists in Windows Defender Application Control (WDAC) which could allow an attacker to bypass WDAC enforcement. An attacker who successfully exploited this vulnerability could execute PowerShell commands that would be blocked by… | ||
| CVE-2020-1398 | Med | 0.44 | 6.8 | 0.01 | Jul 14, 2020 | An elevation of privilege vulnerability exists when Windows Lockscreen fails to properly handle Ease of Access dialog.An attacker who successfully exploited the vulnerability could execute commands with elevated permissions.The security update addresses the vulnerability by… | ||
| CVE-2020-1333 | Med | 0.44 | 6.7 | 0.01 | Jul 14, 2020 | An elevation of privilege vulnerability exists when Group Policy Services Policy Processing improperly handle reparse points, aka 'Group Policy Services Policy Processing Elevation of Privilege Vulnerability'. | ||
| CVE-2020-1310 | Med | 0.44 | 6.7 | 0.01 | Jun 9, 2020 | An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1207, CVE-2020-1247, CVE-2020-1251, CVE-2020-1253. | ||
| CVE-2020-1258 | Med | 0.44 | 6.7 | 0.01 | Jun 9, 2020 | An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka 'DirectX Elevation of Privilege Vulnerability'. | ||
| CVE-2020-1253 | Med | 0.44 | 6.7 | 0.01 | Jun 9, 2020 | An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1207, CVE-2020-1247, CVE-2020-1251, CVE-2020-1310. | ||
| CVE-2020-1251 | Med | 0.44 | 6.7 | 0.01 | Jun 9, 2020 | An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1207, CVE-2020-1247, CVE-2020-1253, CVE-2020-1310. | ||
| CVE-2020-1071 | Med | 0.44 | 6.8 | 0.01 | May 21, 2020 | An elevation of privilege vulnerability exists when Windows improperly handles errors tied to Remote Access Common Dialog. An attacker who successfully exploited the vulnerability could run arbitrary code with elevated privileges. To exploit this vulnerability an attacker would… |
- risk 0.44cvss 6.8epss 0.04
Windows Hyper-V Denial of Service Vulnerability
- risk 0.44cvss 6.8epss 0.01
Windows Hyper-V Discrete Device Assignment (DDA) Denial of Service Vulnerability
- risk 0.44cvss 6.8epss 0.02
Windows MSHTML Platform Remote Code Execution Vulnerability
- risk 0.44cvss 6.8epss 0.02
Windows MSHTML Platform Remote Code Execution Vulnerability
- risk 0.44cvss 6.8epss 0.02
Windows MSHTML Platform Remote Code Execution Vulnerability
- risk 0.44cvss 6.8epss 0.02
Windows MSHTML Platform Remote Code Execution Vulnerability
- risk 0.44cvss 6.7epss 0.01
Windows Partition Management Driver Elevation of Privilege Vulnerability
- risk 0.44cvss 6.8epss 0.02
Windows HTML Platforms Security Feature Bypass Vulnerability
- risk 0.44cvss 6.8epss 0.03
Azure AD Web Sign-in Security Feature Bypass Vulnerability
- risk 0.44cvss 6.8epss 0.01
Windows Lock Screen Security Feature Bypass Vulnerability
- risk 0.44cvss 6.6epss 0.14
A security feature bypass vulnerability exists in the way Key Distribution Center (KDC) determines if a service ticket can be used for delegation via Kerberos Constrained Delegation (KCD). To exploit the vulnerability, a compromised service that is configured to use KCD could…
- risk 0.44cvss 6.8epss 0.01
An elevation of privilege vulnerability exists in Windows Error Reporting (WER) when WER handles and executes files. The vulnerability could allow elevation of privilege if an attacker can successfully exploit it. An attacker who successfully exploited the…
- risk 0.44cvss 6.7epss 0.07
A security feature bypass vulnerability exists in Windows Defender Application Control (WDAC) which could allow an attacker to bypass WDAC enforcement. An attacker who successfully exploited this vulnerability could execute PowerShell commands that would be blocked by…
- risk 0.44cvss 6.8epss 0.01
An elevation of privilege vulnerability exists when Windows Lockscreen fails to properly handle Ease of Access dialog.An attacker who successfully exploited the vulnerability could execute commands with elevated permissions.The security update addresses the vulnerability by…
- risk 0.44cvss 6.7epss 0.01
An elevation of privilege vulnerability exists when Group Policy Services Policy Processing improperly handle reparse points, aka 'Group Policy Services Policy Processing Elevation of Privilege Vulnerability'.
- risk 0.44cvss 6.7epss 0.01
An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1207, CVE-2020-1247, CVE-2020-1251, CVE-2020-1253.
- risk 0.44cvss 6.7epss 0.01
An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka 'DirectX Elevation of Privilege Vulnerability'.
- risk 0.44cvss 6.7epss 0.01
An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1207, CVE-2020-1247, CVE-2020-1251, CVE-2020-1310.
- risk 0.44cvss 6.7epss 0.01
An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1207, CVE-2020-1247, CVE-2020-1253, CVE-2020-1310.
- risk 0.44cvss 6.8epss 0.01
An elevation of privilege vulnerability exists when Windows improperly handles errors tied to Remote Access Common Dialog. An attacker who successfully exploited the vulnerability could run arbitrary code with elevated privileges. To exploit this vulnerability an attacker would…
Page 177 of 248