Windows Server 2019
by Microsoft
CVEs (4,947)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-37957 | Hig | 0.52 | 7.8 | 0.14 | Sep 13, 2022 | Windows Kernel Elevation of Privilege Vulnerability | ||
| CVE-2022-34729 | Hig | 0.52 | 7.8 | 0.11 | Sep 13, 2022 | Windows GDI Elevation of Privilege Vulnerability | ||
| CVE-2022-29104 | Hig | 0.52 | 7.8 | 0.12 | May 10, 2022 | Windows Print Spooler Elevation of Privilege Vulnerability | ||
| CVE-2022-24533 | Hig | 0.52 | 8.0 | 0.05 | Apr 15, 2022 | Remote Desktop Protocol Remote Code Execution Vulnerability | ||
| CVE-2022-24481 | Hig | 0.52 | 7.8 | 0.17 | Apr 15, 2022 | Windows Common Log File System Driver Elevation of Privilege Vulnerability | ||
| CVE-2022-22715 | Hig | 0.52 | 7.8 | 0.13 | Feb 9, 2022 | Named Pipe File System Elevation of Privilege Vulnerability | ||
| CVE-2022-21993 | Hig | 0.52 | 7.5 | 0.44 | Feb 9, 2022 | Windows Services for NFS ONCRPC XDR Driver Information Disclosure Vulnerability | ||
| CVE-2021-43883 | Hig | 0.52 | 7.8 | 0.12 | Dec 15, 2021 | Windows Installer Elevation of Privilege Vulnerability | ||
| CVE-2021-40464 | Hig | 0.52 | 8.0 | 0.01 | Oct 13, 2021 | Windows Nearby Sharing Elevation of Privilege Vulnerability | ||
| CVE-2021-40461 | Hig | 0.52 | 8.0 | 0.01 | Oct 13, 2021 | Windows Hyper-V Remote Code Execution Vulnerability | ||
| CVE-2021-36967 | Hig | 0.52 | 8.0 | 0.01 | Sep 15, 2021 | Windows WLAN AutoConfig Service Elevation of Privilege Vulnerability | ||
| CVE-2021-34446 | Hig | 0.52 | 8.0 | 0.02 | Jul 16, 2021 | Windows HTML Platforms Security Feature Bypass Vulnerability | ||
| CVE-2021-33754 | Hig | 0.52 | 8.0 | 0.02 | Jul 14, 2021 | Windows DNS Server Remote Code Execution Vulnerability | ||
| CVE-2021-33746 | Hig | 0.52 | 8.0 | 0.02 | Jul 14, 2021 | Windows DNS Server Remote Code Execution Vulnerability | ||
| CVE-2021-1726 | Hig | 0.52 | 8.0 | 0.02 | Feb 25, 2021 | Microsoft SharePoint Server Spoofing Vulnerability | ||
| CVE-2020-1507 | Hig | 0.52 | 7.9 | 0.03 | Sep 11, 2020 | An elevation of privilege vulnerability exists in the way that Microsoft COM for Windows handles objects in memory. An attacker who successfully exploited the vulnerability could gain elevated privileges on a targeted system. To exploit the vulnerability, a user would… | ||
| CVE-2020-1552 | Hig | 0.52 | 8.0 | 0.02 | Aug 17, 2020 | An elevation of privilege vulnerability exists when the Windows Work Folder Service improperly handles file operations. An attacker who successfully exploited this vulnerability could run processes in an elevated context. An attacker could exploit this vulnerability by running a… | ||
| CVE-2020-1410 | Hig | 0.52 | 7.8 | 0.12 | Jul 14, 2020 | A remote code execution vulnerability exists when Windows Address Book (WAB) improperly processes vcard files.To exploit the vulnerability, an attacker could send a malicious vcard that a victim opens using Windows Address Book (WAB), aka 'Windows Address Book Remote Code… | ||
| CVE-2020-1409 | Hig | 0.52 | 7.8 | 0.12 | Jul 14, 2020 | A remote code execution vulnerability exists in the way that DirectWrite handles objects in memory, aka 'DirectWrite Remote Code Execution Vulnerability'. | ||
| CVE-2020-1407 | Hig | 0.52 | 7.8 | 0.11 | Jul 14, 2020 | A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1400, CVE-2020-1401. |
- risk 0.52cvss 7.8epss 0.14
Windows Kernel Elevation of Privilege Vulnerability
- risk 0.52cvss 7.8epss 0.11
Windows GDI Elevation of Privilege Vulnerability
- risk 0.52cvss 7.8epss 0.12
Windows Print Spooler Elevation of Privilege Vulnerability
- risk 0.52cvss 8.0epss 0.05
Remote Desktop Protocol Remote Code Execution Vulnerability
- risk 0.52cvss 7.8epss 0.17
Windows Common Log File System Driver Elevation of Privilege Vulnerability
- risk 0.52cvss 7.8epss 0.13
Named Pipe File System Elevation of Privilege Vulnerability
- risk 0.52cvss 7.5epss 0.44
Windows Services for NFS ONCRPC XDR Driver Information Disclosure Vulnerability
- risk 0.52cvss 7.8epss 0.12
Windows Installer Elevation of Privilege Vulnerability
- risk 0.52cvss 8.0epss 0.01
Windows Nearby Sharing Elevation of Privilege Vulnerability
- risk 0.52cvss 8.0epss 0.01
Windows Hyper-V Remote Code Execution Vulnerability
- risk 0.52cvss 8.0epss 0.01
Windows WLAN AutoConfig Service Elevation of Privilege Vulnerability
- risk 0.52cvss 8.0epss 0.02
Windows HTML Platforms Security Feature Bypass Vulnerability
- risk 0.52cvss 8.0epss 0.02
Windows DNS Server Remote Code Execution Vulnerability
- risk 0.52cvss 8.0epss 0.02
Windows DNS Server Remote Code Execution Vulnerability
- risk 0.52cvss 8.0epss 0.02
Microsoft SharePoint Server Spoofing Vulnerability
- risk 0.52cvss 7.9epss 0.03
An elevation of privilege vulnerability exists in the way that Microsoft COM for Windows handles objects in memory. An attacker who successfully exploited the vulnerability could gain elevated privileges on a targeted system. To exploit the vulnerability, a user would…
- risk 0.52cvss 8.0epss 0.02
An elevation of privilege vulnerability exists when the Windows Work Folder Service improperly handles file operations. An attacker who successfully exploited this vulnerability could run processes in an elevated context. An attacker could exploit this vulnerability by running a…
- risk 0.52cvss 7.8epss 0.12
A remote code execution vulnerability exists when Windows Address Book (WAB) improperly processes vcard files.To exploit the vulnerability, an attacker could send a malicious vcard that a victim opens using Windows Address Book (WAB), aka 'Windows Address Book Remote Code…
- risk 0.52cvss 7.8epss 0.12
A remote code execution vulnerability exists in the way that DirectWrite handles objects in memory, aka 'DirectWrite Remote Code Execution Vulnerability'.
- risk 0.52cvss 7.8epss 0.11
A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1400, CVE-2020-1401.
Page 51 of 248