← Back

Windows Server 2016

windows_server_2016

Vendor: Microsoft • 4,681 CVEs

CVEs (4,681)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Microsoft
8Windows 10
Windows 7Windows 8.1+5 more
Nov 21, 2024
Mar 11, 2021
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
Windows Win32k Elevation of Privilege Vulnerability
1Microsoft
2Windows 10
Windows Server 2016
Nov 21, 2024
Mar 11, 2021
N/A· v4
7.8 HIGH· v3
9.3 HIGH· v2
Windows 10 Update Assistant Elevation of Privilege Vulnerability
1Microsoft
4Windows Server 2008
Windows Server 2012Windows Server 2016+1 more
Nov 21, 2024
Mar 11, 2021
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Windows DNS Server Denial of Service Vulnerability
1Microsoft
8Windows 10
Windows 7Windows 8.1+5 more
Nov 21, 2024
Mar 11, 2021
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
Windows Event Tracing Elevation of Privilege Vulnerability
1Microsoft
2Windows 10
Windows Server 2016
Nov 21, 2024
Mar 11, 2021
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
Windows Win32k Elevation of Privilege Vulnerability
1Microsoft
8Windows 10
Windows 7Windows 8.1+5 more
Nov 21, 2024
Mar 11, 2021
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
Windows UPnP Device Host Elevation of Privilege Vulnerability
1Microsoft
8Windows 10
Windows 7Windows 8.1+5 more
Nov 21, 2024
Mar 11, 2021
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
Windows Event Tracing Elevation of Privilege Vulnerability
1Microsoft
4Windows Server 2008
Windows Server 2012Windows Server 2016+1 more
Nov 21, 2024
Mar 11, 2021
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Windows DNS Server Remote Code Execution Vulnerability
1Microsoft
4Windows Server 2008
Windows Server 2012Windows Server 2016+1 more
Nov 21, 2024
Mar 11, 2021
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Windows DNS Server Denial of Service Vulnerability
1Microsoft
4Windows Server 2008
Windows Server 2012Windows Server 2016+1 more
Nov 21, 2024
Mar 11, 2021
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Windows DNS Server Remote Code Execution Vulnerability
1Microsoft
4Windows Server 2008
Windows Server 2012Windows Server 2016+1 more
Nov 21, 2024
Mar 11, 2021
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Windows DNS Server Remote Code Execution Vulnerability
1Microsoft
4Windows Server 2008
Windows Server 2012Windows Server 2016+1 more
Nov 21, 2024
Mar 11, 2021
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Windows DNS Server Remote Code Execution Vulnerability
1Microsoft
3Windows 10
Windows Server 2016Windows Server 2019
Nov 21, 2024
Mar 11, 2021
N/A· v4
5.5 MEDIUM· v3
2.1 LOW· v2
Windows Extensible Firmware Interface Security Feature Bypass Vulnerability
1Microsoft
3Windows 10
Windows Server 2016Windows Server 2019
Nov 21, 2024
Mar 11, 2021
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
Windows Container Execution Agent Elevation of Privilege Vulnerability
1Microsoft
3Windows 10
Windows Server 2016Windows Server 2019
Nov 21, 2024
Mar 11, 2021
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
Application Virtualization Remote Code Execution Vulnerability
1Microsoft
3Windows 10
Windows Server 2016Windows Server 2019
Nov 21, 2024
Mar 11, 2021
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
Windows Update Stack Elevation of Privilege Vulnerability
1Microsoft
8Windows 10
Windows 7Windows 8.1+5 more
Feb 24, 2026
Mar 11, 2021
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
<p>An elevation of privilege vulnerability exists in Microsoft Windows when Folder redirection has been enabled via Group Policy. When folder redirection file server is co-located with Terminal server, an attacker who su...Show more
<p>An elevation of privilege vulnerability exists in Microsoft Windows when Folder redirection has been enabled via Group Policy. When folder redirection file server is co-located with Terminal server, an attacker who successfully exploited the vulnerability would be able to begin redirecting another user's personal data to a created folder.</p> <p>To exploit the vulnerability, an attacker can create a new folder under the Folder Redirection root path and create a junction on a newly created User folder. When the new user logs in, Folder Redirection would start redirecting to the folder and copying personal data.</p> <p>This elevation of privilege vulnerability can only be addressed by reconfiguring Folder Redirection with Offline files and restricting permissions, and NOT via a security update for affected Windows Servers. See the <strong>FAQ</strong> section of this CVE for configuration guidance.</p>Show less
1Microsoft
6Windows 10
Windows 8.1Windows Rt 8.1+3 more
Nov 21, 2024
Mar 11, 2021
N/A· v4
6.1 MEDIUM· v3
3.6 LOW· v2
User Profile Service Denial of Service Vulnerability
1Microsoft
6Windows 10
Windows 8.1Windows Rt 8.1+3 more
Nov 21, 2024
Mar 11, 2021
N/A· v4
5.5 MEDIUM· v3
2.1 LOW· v2
Windows Media Photo Codec Information Disclosure Vulnerability
1Microsoft
8Windows 10
Windows 7Windows 8.1+5 more
Nov 21, 2024
Mar 11, 2021
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
Remote Access API Elevation of Privilege Vulnerability