Vulnerabilities > Microsoft > Windows Server 2019

DATE CVE VULNERABILITY TITLE RISK
2019-09-11 CVE-2019-1215 Unspecified vulnerability in Microsoft products
An elevation of privilege vulnerability exists in the way that ws2ifsl.sys (Winsock) handles objects in memory, aka 'Windows Elevation of Privilege Vulnerability'.
local
low complexity
microsoft
7.8
2019-09-11 CVE-2019-1214 Unspecified vulnerability in Microsoft products
An elevation of privilege vulnerability exists when the Windows Common Log File System (CLFS) driver improperly handles objects in memory, aka 'Windows Common Log File System Driver Elevation of Privilege Vulnerability'.
local
low complexity
microsoft
7.8
2019-09-03 CVE-2019-1125 An information disclosure vulnerability exists when certain central processing units (CPU) speculatively access memory.
local
high complexity
microsoft redhat
5.6
2019-08-14 CVE-2019-1226 Unspecified vulnerability in Microsoft products
A remote code execution vulnerability exists in Remote Desktop Services – formerly known as Terminal Services – when an unauthenticated attacker connects to the target system using RDP and sends specially crafted requests.
network
low complexity
microsoft
critical
9.8
2019-08-14 CVE-2019-1225 Information Exposure vulnerability in Microsoft products
An information disclosure vulnerability exists when the Windows RDP server improperly discloses the contents of its memory.
network
low complexity
microsoft CWE-200
7.5
2019-08-14 CVE-2019-1224 Information Exposure vulnerability in Microsoft products
An information disclosure vulnerability exists when the Windows RDP server improperly discloses the contents of its memory.
network
low complexity
microsoft CWE-200
7.5
2019-08-14 CVE-2019-1223 Unspecified vulnerability in Microsoft products
A denial of service vulnerability exists in Remote Desktop Protocol (RDP) when an attacker connects to the target system using RDP and sends specially crafted requests.
network
low complexity
microsoft
7.5
2019-08-14 CVE-2019-1222 Unspecified vulnerability in Microsoft products
A remote code execution vulnerability exists in Remote Desktop Services – formerly known as Terminal Services – when an unauthenticated attacker connects to the target system using RDP and sends specially crafted requests.
network
low complexity
microsoft
critical
9.8
2019-08-14 CVE-2019-1212 Out-of-bounds Write vulnerability in Microsoft products
A memory corruption vulnerability exists in the Windows Server DHCP service when processing specially crafted packets.
network
low complexity
microsoft CWE-787
critical
9.8
2019-08-14 CVE-2019-1206 Out-of-bounds Write vulnerability in Microsoft products
A memory corruption vulnerability exists in the Windows Server DHCP service when an attacker sends specially crafted packets to a DHCP failover server.
network
low complexity
microsoft CWE-787
7.5