VYPR

Windows Server 2003

by Microsoft

Source repositories

CVEs (5,318)

  • CVE-2018-8449LowSep 13, 2018
    risk 0.25cvss 3.3epss 0.03

    A security feature bypass exists when Device Guard incorrectly validates an untrusted file, aka "Device Guard Security Feature Bypass Vulnerability." This affects Windows Server 2016, Windows 10, Windows 10 Servers.

  • CVE-2018-0966LowApr 12, 2018
    risk 0.25cvss 3.3epss 0.02

    A security feature bypass exists when Device Guard incorrectly validates an untrusted file, aka "Device Guard Security Feature Bypass Vulnerability." This affects Windows Server 2016, Windows 10, Windows 10 Servers.

  • CVE-2025-49760LowJul 8, 2025
    risk 0.23cvss 3.5epss 0.01

    External control of file name or path in Windows Storage allows an authorized attacker to perform spoofing over a network.

  • CVE-2026-21249LowFeb 10, 2026
    risk 0.22cvss 3.3epss 0.11

    External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spoofing locally.

  • CVE-2022-21977LowMar 9, 2022
    risk 0.22cvss 3.3epss 0.03

    Media Foundation Information Disclosure Vulnerability

  • CVE-2020-17097LowDec 10, 2020
    risk 0.22cvss 3.3epss 0.01

    Windows Digital Media Receiver Elevation of Privilege Vulnerability

  • CVE-2019-1488LowDec 10, 2019
    risk 0.22cvss 3.3epss 0.01

    A security feature bypass vulnerability exists when Microsoft Defender improperly handles specific buffers, aka 'Microsoft Defender Security Feature Bypass Vulnerability'.

  • CVE-2019-1418LowNov 12, 2019
    risk 0.22cvss 3.3epss 0.02

    An information vulnerability exists when Windows Modules Installer Service improperly discloses file information, aka 'Windows Modules Installer Service Information Disclosure Vulnerability'.

  • CVE-2025-21337LowFeb 11, 2025
    risk 0.21cvss 3.3epss 0.01

    Windows NTFS Elevation of Privilege Vulnerability

  • CVE-2023-21759LowJan 10, 2023
    risk 0.21cvss 3.3epss 0.01

    Windows Smart Card Resource Management Server Security Feature Bypass Vulnerability

  • CVE-2022-38022LowOct 11, 2022
    risk 0.21cvss 3.3epss 0.01

    Windows Kernel Elevation of Privilege Vulnerability

  • CVE-2018-8482LowOct 10, 2018
    risk 0.21cvss 3.1epss 0.05

    An information disclosure vulnerability exists when Windows Media Player improperly discloses file information, aka "Windows Media Player Information Disclosure Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server…

  • CVE-2018-8481LowOct 10, 2018
    risk 0.21cvss 3.1epss 0.05

    An information disclosure vulnerability exists when Windows Media Player improperly discloses file information, aka "Windows Media Player Information Disclosure Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server…

  • CVE-2025-59280LowOct 14, 2025
    risk 0.20cvss 3.1epss 0.00

    Improper authentication in Windows SMB Client allows an unauthorized attacker to perform tampering over a network.

  • CVE-2025-21312LowJan 14, 2025
    risk 0.16cvss 2.4epss 0.01

    Windows Smart Card Reader Information Disclosure Vulnerability

  • CVE-2017-11850LowNov 15, 2017
    risk 0.16cvss 2.5epss 0.03

    Microsoft Graphics Component in Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and 1709, Windows Server 2016 and Windows Server, version 1709 allows an attacker to log on to an affected system and run a specially crafted application due to…

  • CVE-2025-59294LowOct 14, 2025
    risk 0.14cvss 2.1epss 0.01

    Exposure of sensitive information to an unauthorized actor in Windows Taskbar Live allows an unauthorized attacker to disclose information with a physical attack.

  • CVE-2026-56155HigKEVJul 14, 2026
    risk 0.12cvss 7.8epss 0.00

    Insufficient granularity of access control in Active Directory Federation Services (AD FS) allows an authorized attacker to elevate privileges locally.

  • CVE-2003-0352Aug 18, 2003
    risk 0.11cvss epss 0.98

    Buffer overflow in a certain DCOM interface for RPC in Microsoft Windows NT 4.0, 2000, XP, and Server 2003 allows remote attackers to execute arbitrary code via a malformed message, as exploited by the Blaster/MSblast/LovSAN and Nachi/Welchia worms.

  • CVE-2010-0483Mar 3, 2010
    risk 0.10cvss epss 0.86

    vbscript.dll in VBScript 5.1, 5.6, 5.7, and 5.8 in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2, when Internet Explorer is used, allows user-assisted remote attackers to execute arbitrary code by referencing a (1) local pathname, (2) UNC share pathname, or (3)…

Page 218 of 266