Vulnerabilities > Microsoft > Windows Server 2008 > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-09-11 CVE-2020-0664 Unspecified vulnerability in Microsoft products
<p>An information disclosure vulnerability exists when Active Directory integrated DNS (ADIDNS) mishandles objects in memory.
network
low complexity
microsoft
6.5
2020-08-17 CVE-2020-1485 Unspecified vulnerability in Microsoft products
An information disclosure vulnerability exists when the Windows Image Acquisition (WIA) Service improperly discloses contents of its memory.
local
low complexity
microsoft
5.5
2020-08-17 CVE-2020-1472 Use of Insufficiently Random Values vulnerability in multiple products
An elevation of privilege vulnerability exists when an attacker establishes a vulnerable Netlogon secure channel connection to a domain controller, using the Netlogon Remote Protocol (MS-NRPC).
5.5
2020-08-17 CVE-2020-1383 Unspecified vulnerability in Microsoft products
An information disclosure vulnerability exists in RPC if the server has Routing and Remote Access enabled.
local
low complexity
microsoft
5.5
2020-08-17 CVE-2020-1379 Out-of-bounds Write vulnerability in Microsoft products
A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in memory.
local
low complexity
microsoft CWE-787
5.5
2020-07-14 CVE-2020-1468 Unspecified vulnerability in Microsoft products
An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Information Disclosure Vulnerability'.
network
low complexity
microsoft
6.5
2020-07-14 CVE-2020-1419 Missing Initialization of Resource vulnerability in Microsoft products
An information disclosure vulnerability exists when the Windows kernel fails to properly initialize a memory address, aka 'Windows Kernel Information Disclosure Vulnerability'.
local
low complexity
microsoft CWE-909
5.5
2020-07-14 CVE-2020-1397 Unspecified vulnerability in Microsoft products
An information disclosure vulnerability exists in Windows when the Windows Imaging Component fails to properly handle objects in memory, aka 'Windows Imaging Component Information Disclosure Vulnerability'.
network
low complexity
microsoft
6.5
2020-07-14 CVE-2020-1389 Improper Initialization vulnerability in Microsoft products
An information disclosure vulnerability exists when the Windows kernel fails to properly initialize a memory address, aka 'Windows Kernel Information Disclosure Vulnerability'.
local
low complexity
microsoft CWE-665
5.5
2020-07-14 CVE-2020-1351 Unspecified vulnerability in Microsoft products
An information disclosure vulnerability exists when the Windows Graphics component improperly handles objects in memory, aka 'Microsoft Graphics Component Information Disclosure Vulnerability'.
local
low complexity
microsoft
5.5