Vulnerabilities > Microsoft > Windows Server 2016 > High

DATE CVE VULNERABILITY TITLE RISK
2019-09-11 CVE-2019-1232 Unspecified vulnerability in Microsoft products
An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector Service improperly impersonates certain file operations, aka 'Diagnostics Hub Standard Collector Service Elevation of Privilege Vulnerability'.
local
low complexity
microsoft
7.8
2019-09-11 CVE-2019-1215 Unspecified vulnerability in Microsoft products
An elevation of privilege vulnerability exists in the way that ws2ifsl.sys (Winsock) handles objects in memory, aka 'Windows Elevation of Privilege Vulnerability'.
local
low complexity
microsoft
7.8
2019-09-11 CVE-2019-1214 Unspecified vulnerability in Microsoft products
An elevation of privilege vulnerability exists when the Windows Common Log File System (CLFS) driver improperly handles objects in memory, aka 'Windows Common Log File System Driver Elevation of Privilege Vulnerability'.
local
low complexity
microsoft
7.8
2019-08-14 CVE-2019-1185 Unspecified vulnerability in Microsoft Windows 10 and Windows Server 2016
An elevation of privilege vulnerability exists due to a stack corruption in Windows Subsystem for Linux.
local
low complexity
microsoft
7.8
2019-08-14 CVE-2019-1183 Unspecified vulnerability in Microsoft products
This information is being revised to indicate that this CVE (CVE-2019-1183) is fully mitigated by the security updates for the vulnerability discussed in CVE-2019-1194.
network
low complexity
microsoft
8.8
2019-07-15 CVE-2019-1130 Link Following vulnerability in Microsoft products
An elevation of privilege vulnerability exists when Windows AppX Deployment Service (AppXSVC) improperly handles hard links, aka 'Windows Elevation of Privilege Vulnerability'.
local
low complexity
microsoft CWE-59
7.8
2019-07-15 CVE-2019-1129 Link Following vulnerability in Microsoft products
An elevation of privilege vulnerability exists when Windows AppX Deployment Service (AppXSVC) improperly handles hard links, aka 'Windows Elevation of Privilege Vulnerability'.
local
low complexity
microsoft CWE-59
7.8
2019-07-15 CVE-2019-1128 Unspecified vulnerability in Microsoft products
A remote code execution vulnerability exists in the way that DirectWrite handles objects in memory, aka 'DirectWrite Remote Code Execution Vulnerability'.
network
low complexity
microsoft
8.8
2019-07-15 CVE-2019-1127 Unspecified vulnerability in Microsoft products
A remote code execution vulnerability exists in the way that DirectWrite handles objects in memory, aka 'DirectWrite Remote Code Execution Vulnerability'.
network
low complexity
microsoft
8.8
2019-07-15 CVE-2019-1124 Unspecified vulnerability in Microsoft products
A remote code execution vulnerability exists in the way that DirectWrite handles objects in memory, aka 'DirectWrite Remote Code Execution Vulnerability'.
network
low complexity
microsoft
8.8