Vulnerabilities > Microsoft > Windows Server 2016 > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-11-11 CVE-2020-17069 Unspecified vulnerability in Microsoft products
Windows NDIS Information Disclosure Vulnerability
local
low complexity
microsoft
5.5
2020-11-11 CVE-2020-17056 Unspecified vulnerability in Microsoft products
Windows Network File System Information Disclosure Vulnerability
local
low complexity
microsoft
5.5
2020-11-11 CVE-2020-17049 Incorrect Authorization vulnerability in multiple products
A security feature bypass vulnerability exists in the way Key Distribution Center (KDC) determines if a service ticket can be used for delegation via Kerberos Constrained Delegation (KCD). To exploit the vulnerability, a compromised service that is configured to use KCD could tamper with a service ticket that is not valid for delegation to force the KDC to accept it. The update addresses this vulnerability by changing how the KDC validates service tickets used with KCD.
network
high complexity
microsoft samba CWE-863
6.6
2020-11-11 CVE-2020-17046 Unspecified vulnerability in Microsoft products
Windows Error Reporting Denial of Service Vulnerability
local
low complexity
microsoft
5.5
2020-11-11 CVE-2020-17045 Unspecified vulnerability in Microsoft products
Windows KernelStream Information Disclosure Vulnerability
local
low complexity
microsoft
5.5
2020-11-11 CVE-2020-17040 Unspecified vulnerability in Microsoft products
Windows Hyper-V Security Feature Bypass Vulnerability
network
low complexity
microsoft
6.5
2020-11-11 CVE-2020-17036 Unspecified vulnerability in Microsoft products
Windows Function Discovery SSDP Provider Information Disclosure Vulnerability
local
low complexity
microsoft
5.5
2020-11-11 CVE-2020-17030 Unspecified vulnerability in Microsoft products
Windows MSCTF Server Information Disclosure Vulnerability
local
low complexity
microsoft
5.5
2020-11-11 CVE-2020-17029 Unspecified vulnerability in Microsoft products
Windows Canonical Display Driver Information Disclosure Vulnerability
local
low complexity
microsoft
5.5
2020-11-11 CVE-2020-17013 Unspecified vulnerability in Microsoft products
Win32k Information Disclosure Vulnerability
local
low complexity
microsoft
5.5