Windows Server 2019
by Microsoft
CVEs (4,947)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-21547 | Hig | 0.56 | 7.5 | 0.89 | Jan 10, 2023 | Internet Key Exchange (IKE) Protocol Denial of Service Vulnerability | ||
| CVE-2021-31977 | Hig | 0.56 | 8.6 | 0.03 | Jun 8, 2021 | Windows Hyper-V Denial of Service Vulnerability | ||
| CVE-2020-17095 | Hig | 0.56 | 8.5 | 0.05 | Dec 10, 2020 | Windows Hyper-V Remote Code Execution Vulnerability | ||
| CVE-2020-1112 | Hig | 0.56 | 8.5 | 0.04 | May 21, 2020 | An elevation of privilege vulnerability exists when the Windows Background Intelligent Transfer Service (BITS) IIS module improperly handles uploaded content. An attacker who successfully exploited this vulnerability could upload restricted file types to an IIS-hosted folder. To… | ||
| CVE-2020-0668 | Hig | 0.56 | 7.8 | 0.26 | Feb 11, 2020 | An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects in memory, aka 'Windows Kernel Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0669, CVE-2020-0670, CVE-2020-0671, CVE-2020-0672. | ||
| CVE-2019-0572 | Hig | 0.56 | 7.8 | 0.25 | Jan 8, 2019 | An elevation of privilege vulnerability exists when the Windows Data Sharing Service improperly handles file operations, aka "Windows Data Sharing Service Elevation of Privilege Vulnerability." This affects Windows Server 2016, Windows 10, Windows Server 2019, Windows 10… | ||
| CVE-2026-45607 | Hig | 0.55 | 8.4 | 0.00 | Jun 9, 2026 | Out-of-bounds read in Windows Hyper-V allows an unauthorized attacker to execute code locally. | ||
| CVE-2026-32162 | Hig | 0.55 | 8.4 | 0.02 | Apr 14, 2026 | Acceptance of extraneous untrusted data with trusted data in Windows COM allows an unauthorized attacker to elevate privileges locally. | ||
| CVE-2026-32091 | Hig | 0.55 | 8.4 | 0.00 | Apr 14, 2026 | Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Brokering File System allows an unauthorized attacker to elevate privileges locally. | ||
| CVE-2025-33067 | Hig | 0.55 | 8.4 | 0.00 | Jun 10, 2025 | Improper privilege management in Windows Kernel allows an unauthorized attacker to elevate privileges locally. | ||
| CVE-2025-26678 | Hig | 0.55 | 8.4 | 0.01 | Apr 8, 2025 | Improper access control in Windows Defender Application Control (WDAC) allows an unauthorized attacker to bypass a security feature locally. | ||
| CVE-2024-49113 | Hig | 0.55 | 7.5 | 0.83 | Dec 12, 2024 | Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability | ||
| CVE-2024-49105 | Hig | 0.55 | 8.4 | 0.02 | Dec 12, 2024 | Remote Desktop Client Remote Code Execution Vulnerability | ||
| CVE-2024-38213 | Med | 0.55 | 6.5 | 0.14 | KEV | Aug 13, 2024 | Windows Mark of the Web Security Feature Bypass Vulnerability | |
| CVE-2024-37984 | Hig | 0.55 | 8.4 | 0.01 | Jul 9, 2024 | Secure Boot Security Feature Bypass Vulnerability | ||
| CVE-2024-30085 | Hig | 0.55 | 7.8 | 0.14 | Jun 11, 2024 | Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability | ||
| CVE-2024-29050 | Hig | 0.55 | 8.4 | 0.01 | Apr 9, 2024 | Windows Cryptographic Services Remote Code Execution Vulnerability | ||
| CVE-2024-21357 | Hig | 0.55 | 8.1 | 0.27 | Feb 13, 2024 | Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability | ||
| CVE-2022-38044 | Hig | 0.55 | 7.8 | 0.56 | Oct 11, 2022 | Windows CD-ROM File System Driver Remote Code Execution Vulnerability | ||
| CVE-2022-30222 | Hig | 0.55 | 8.4 | 0.01 | Jul 12, 2022 | Windows Shell Remote Code Execution Vulnerability |
- risk 0.56cvss 7.5epss 0.89
Internet Key Exchange (IKE) Protocol Denial of Service Vulnerability
- risk 0.56cvss 8.6epss 0.03
Windows Hyper-V Denial of Service Vulnerability
- risk 0.56cvss 8.5epss 0.05
Windows Hyper-V Remote Code Execution Vulnerability
- risk 0.56cvss 8.5epss 0.04
An elevation of privilege vulnerability exists when the Windows Background Intelligent Transfer Service (BITS) IIS module improperly handles uploaded content. An attacker who successfully exploited this vulnerability could upload restricted file types to an IIS-hosted folder. To…
- risk 0.56cvss 7.8epss 0.26
An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects in memory, aka 'Windows Kernel Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0669, CVE-2020-0670, CVE-2020-0671, CVE-2020-0672.
- risk 0.56cvss 7.8epss 0.25
An elevation of privilege vulnerability exists when the Windows Data Sharing Service improperly handles file operations, aka "Windows Data Sharing Service Elevation of Privilege Vulnerability." This affects Windows Server 2016, Windows 10, Windows Server 2019, Windows 10…
- risk 0.55cvss 8.4epss 0.00
Out-of-bounds read in Windows Hyper-V allows an unauthorized attacker to execute code locally.
- risk 0.55cvss 8.4epss 0.02
Acceptance of extraneous untrusted data with trusted data in Windows COM allows an unauthorized attacker to elevate privileges locally.
- risk 0.55cvss 8.4epss 0.00
Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Brokering File System allows an unauthorized attacker to elevate privileges locally.
- risk 0.55cvss 8.4epss 0.00
Improper privilege management in Windows Kernel allows an unauthorized attacker to elevate privileges locally.
- risk 0.55cvss 8.4epss 0.01
Improper access control in Windows Defender Application Control (WDAC) allows an unauthorized attacker to bypass a security feature locally.
- risk 0.55cvss 7.5epss 0.83
Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability
- risk 0.55cvss 8.4epss 0.02
Remote Desktop Client Remote Code Execution Vulnerability
- risk 0.55cvss 6.5epss 0.14
Windows Mark of the Web Security Feature Bypass Vulnerability
- risk 0.55cvss 8.4epss 0.01
Secure Boot Security Feature Bypass Vulnerability
- risk 0.55cvss 7.8epss 0.14
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
- risk 0.55cvss 8.4epss 0.01
Windows Cryptographic Services Remote Code Execution Vulnerability
- risk 0.55cvss 8.1epss 0.27
Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability
- risk 0.55cvss 7.8epss 0.56
Windows CD-ROM File System Driver Remote Code Execution Vulnerability
- risk 0.55cvss 8.4epss 0.01
Windows Shell Remote Code Execution Vulnerability
Page 38 of 248