Vulnerabilities > Microsoft > Windows Server 2016 > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-09-11 CVE-2020-0928 Unspecified vulnerability in Microsoft products
<p>An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory.
local
low complexity
microsoft
5.5
2020-09-11 CVE-2020-0921 Unspecified vulnerability in Microsoft products
Microsoft Graphics Component Denial of Service Vulnerability
local
low complexity
microsoft
5.5
2020-09-11 CVE-2020-0914 Unspecified vulnerability in Microsoft products
<p>An information disclosure vulnerability exists when the Windows State Repository Service improperly handles objects in memory.
local
low complexity
microsoft
5.5
2020-09-11 CVE-2020-0904 Improper Input Validation vulnerability in Microsoft products
<p>A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly validate specific malicious data from a user on a guest operating system.</p> <p>To exploit the vulnerability, an attacker who already has a privileged account on a guest operating system, running as a virtual machine, could run a specially crafted application.</p> <p>The security update addresses the vulnerability by resolving the conditions where Hyper-V would fail to handle these requests.</p>
local
low complexity
microsoft CWE-20
6.5
2020-09-11 CVE-2020-0890 Unspecified vulnerability in Microsoft products
<p>A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly validate specific malicious data from a user on a guest operating system.</p> <p>To exploit the vulnerability, an attacker who already has a privileged account on a guest operating system, running as a virtual machine, could run a specially crafted application.</p> <p>The security update addresses the vulnerability by resolving the conditions where Hyper-V would fail to handle these requests.</p>
local
low complexity
microsoft
6.5
2020-09-11 CVE-2020-0875 Unspecified vulnerability in Microsoft products
<p>An information disclosure vulnerability exists in how splwow64.exe handles certain calls.
local
low complexity
microsoft
5.5
2020-09-11 CVE-2020-0856 Unspecified vulnerability in Microsoft products
<p>An information disclosure vulnerability exists when Active Directory integrated DNS (ADIDNS) mishandles objects in memory.
network
low complexity
microsoft
6.5
2020-09-11 CVE-2020-0837 Unspecified vulnerability in Microsoft products
<p>An elevation of privilege vulnerability exists when Active Directory Federation Services (ADFS) improperly handles multi-factor authentication requests.
network
high complexity
microsoft
5.0
2020-09-11 CVE-2020-0805 Unspecified vulnerability in Microsoft Windows 10 and Windows Server 2016
<p>A security feature bypass vulnerability exists when a Windows Projected Filesystem improperly handles file redirections.
local
low complexity
microsoft
5.3
2020-09-11 CVE-2020-0664 Unspecified vulnerability in Microsoft products
<p>An information disclosure vulnerability exists when Active Directory integrated DNS (ADIDNS) mishandles objects in memory.
network
low complexity
microsoft
6.5