microsoft / windows_server_2019
1,452 known vulnerabilities in microsoft windows_server_2019.
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-69539 | Medium | 0.5% | 7.5 | Use after free in Windows Remote Desktop Services allows an authorized attacker … | |
| CVE-2026-56648 | Medium | 0.5% | 7.5 | Time-of-check time-of-use (toctou) race condition in Windows Network File System… | |
| CVE-2026-58531 | Medium | 0.5% | 7.5 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-20804 | Medium | 0.5% | 7.7 | Incorrect privilege assignment in Windows Hello allows an unauthorized attacker … | |
| CVE-2026-20852 | Medium | 0.5% | 7.7 | Incorrect privilege assignment in Windows Hello allows an unauthorized attacker … | |
| CVE-2026-78444 | Medium | 0.5% | 8.1 | Untrusted pointer dereference in Windows Failover Cluster allows an unauthorized… | |
| CVE-2026-78450 | Medium | 0.5% | 8.1 | Use after free in Reliable Multicast Transport Driver (RMCAST) allows an unautho… | |
| CVE-2026-62778 | Medium | 0.5% | 8.1 | Use after free in Windows DNS allows an unauthorized attacker to elevate privile… | |
| CVE-2026-47288 | Medium | 0.5% | 7.1 | Integer overflow or wraparound in Windows Kerberos allows an authorized attacker… | |
| CVE-2021-34537 | Medium | 0.5% | 7.8 | Windows Bluetooth Driver Elevation of Privilege Vulnerability | |
| CVE-2026-69412 | Medium | 0.5% | 8.0 | Stack-based buffer overflow in Windows DHCP Server allows an authorized attacker… | |
| CVE-2026-69847 | Medium | 0.5% | 8.0 | Heap-based buffer overflow in Windows DHCP Server allows an authorized attacker … | |
| CVE-2021-36957 | Medium | 0.5% | 7.8 | Windows Desktop Bridge Elevation of Privilege Vulnerability | |
| CVE-2021-41366 | Medium | 0.5% | 7.8 | Credential Security Support Provider Protocol (CredSSP) Elevation of Privilege V… | |
| CVE-2021-41367 | Medium | 0.5% | 7.8 | NTFS Elevation of Privilege Vulnerability | |
| CVE-2021-41370 | Medium | 0.5% | 7.8 | NTFS Elevation of Privilege Vulnerability | |
| CVE-2021-41377 | Medium | 0.5% | 7.8 | Windows Fast FAT File System Driver Elevation of Privilege Vulnerability | |
| CVE-2021-42283 | Medium | 0.5% | 8.8 | NTFS Elevation of Privilege Vulnerability | |
| CVE-2026-20832 | Medium | 0.5% | 7.8 | Windows Remote Procedure Call Interface Definition Language (IDL) Elevation of P… | |
| CVE-2026-20857 | Medium | 0.5% | 7.8 | Untrusted pointer dereference in Windows Cloud Files Mini Filter Driver allows a… | |
| CVE-2026-62735 | Medium | 0.5% | 7.8 | Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to … | |
| CVE-2026-49176 | Medium | 0.5% | 7.8 | Improper privilege management in Windows WalletService allows an authorized atta… | |
| CVE-2026-49796 | Medium | 0.5% | 7.8 | Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to ex… | |
| CVE-2026-49797 | Medium | 0.5% | 7.8 | Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to ex… | |
| CVE-2026-50308 | Medium | 0.5% | 7.8 | Integer underflow (wrap or wraparound) in Windows NTFS allows an unauthorized at… | |
| CVE-2026-50313 | Medium | 0.5% | 7.8 | Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to ex… | |
| CVE-2026-50386 | Medium | 0.5% | 7.8 | Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to ex… | |
| CVE-2026-50388 | Medium | 0.5% | 7.8 | Out-of-bounds read in Windows NTFS allows an unauthorized attacker to execute co… | |
| CVE-2026-50448 | Medium | 0.5% | 7.8 | Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to ex… | |
| CVE-2026-50461 | Medium | 0.5% | 7.8 | Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to ex… | |
| CVE-2026-50471 | Medium | 0.5% | 7.8 | Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to ex… | |
| CVE-2026-50655 | Medium | 0.5% | 7.8 | Heap-based buffer overflow in Windows Media allows an unauthorized attacker to e… | |
| CVE-2026-58609 | Medium | 0.5% | 7.8 | Out-of-bounds read in Microsoft Graphics Component allows an unauthorized attack… | |
| CVE-2026-58610 | Medium | 0.5% | 7.8 | Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unaut… | |
| CVE-2026-20940 | Medium | 0.5% | 7.8 | Heap-based buffer overflow in Windows Cloud Files Mini Filter Driver allows an a… | |
| CVE-2026-42992 | Medium | 0.5% | 7.5 | Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attac… | |
| CVE-2026-44799 | Medium | 0.5% | 7.5 | Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attac… | |
| CVE-2026-44801 | Medium | 0.5% | 7.5 | Use after free in Remote Desktop Client allows an unauthorized attacker to execu… | |
| CVE-2026-50462 | Medium | 0.5% | 7.8 | External control of file name or path in Windows Ancillary Function Driver for W… | |
| CVE-2026-71331 | Medium | 0.5% | 8.1 | Integer overflow or wraparound in Windows Device Health Attestation (DHA) allows… | |
| CVE-2026-48574 | Medium | 0.4% | 7.8 | Heap-based buffer overflow in Windows Media allows an unauthorized attacker to e… | |
| CVE-2026-50347 | Medium | 0.4% | 7.8 | Heap-based buffer overflow in Windows Data dll allows an unauthorized attacker t… | |
| CVE-2026-69266 | Medium | 0.4% | 8.8 | Integer overflow or wraparound in Windows DHCP Server allows an unauthorized att… | |
| CVE-2026-61352 | Medium | 0.4% | 7.5 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2023-21804 | Medium | 0.4% | 7.8 | Windows Graphics Component Elevation of Privilege Vulnerability | |
| CVE-2026-45636 | Medium | 0.4% | 7.8 | Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to ex… | |
| CVE-2026-54999 | Medium | 0.4% | 8.8 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-20923 | Medium | 0.4% | 7.8 | Use after free in Windows Management Services allows an authorized attacker to e… | |
| CVE-2026-62721 | Medium | 0.4% | 7.8 | Insufficient granularity of access control in User-Mode Power Service (UMPS) all… | |
| CVE-2023-21801 | Medium | 0.4% | 7.8 | Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnera… |