Vulnerabilities > Microsoft > Windows Server 2016

DATE CVE VULNERABILITY TITLE RISK
2024-08-08 CVE-2024-21302 Unspecified vulnerability in Microsoft products
Summary: Microsoft was notified that an elevation of privilege vulnerability exists in Windows based systems supporting Virtualization Based Security (VBS), including a subset of Azure Virtual Machine SKUS.
local
low complexity
microsoft
6.7
2024-07-09 CVE-2024-38049 Externally Controlled Reference to a Resource in Another Sphere vulnerability in Microsoft products
Windows Distributed Transaction Coordinator Remote Code Execution Vulnerability
network
high complexity
microsoft CWE-610
8.1
2024-06-11 CVE-2024-35250 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Microsoft products
Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-119
7.8
2024-03-12 CVE-2024-21430 Unspecified vulnerability in Microsoft products
Windows USB Attached SCSI (UAS) Protocol Remote Code Execution Vulnerability
high complexity
microsoft
6.4
2024-02-14 CVE-2023-50387 Allocation of Resources Without Limits or Throttling vulnerability in multiple products
Certain DNSSEC aspects of the DNS protocol (in RFC 4033, 4034, 4035, 6840, and related RFCs) allow remote attackers to cause a denial of service (CPU consumption) via one or more DNSSEC responses, aka the "KeyTrap" issue.
7.5
2024-02-13 CVE-2024-21343 Unspecified vulnerability in Microsoft products
Windows Network Address Translation (NAT) Denial of Service Vulnerability
network
low complexity
microsoft
7.5
2024-02-13 CVE-2024-21363 Unspecified vulnerability in Microsoft products
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
local
low complexity
microsoft
7.8
2024-01-09 CVE-2024-20692 Exposure of Resource to Wrong Sphere vulnerability in Microsoft products
Microsoft Local Security Authority Subsystem Service Information Disclosure Vulnerability
network
low complexity
microsoft CWE-668
5.7
2024-01-09 CVE-2024-21320 Unspecified vulnerability in Microsoft products
Windows Themes Spoofing Vulnerability
network
low complexity
microsoft
6.5
2023-12-12 CVE-2023-36003 Unspecified vulnerability in Microsoft products
XAML Diagnostics Elevation of Privilege Vulnerability
local
low complexity
microsoft
7.3