microsoft / windows_server_2016
1,310 known vulnerabilities in microsoft windows_server_2016.
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-69569 | Low | 0.9% | 5.7 | Untrusted pointer dereference in Windows Print Spooler Components allows an auth… | |
| CVE-2026-50324 | Low | 0.9% | 5.9 | Loop with unreachable exit condition ('infinite loop') in Active Directory Feder… | |
| CVE-2026-68874 | Low | 0.8% | 5.7 | Out-of-bounds read in Windows Program Compatibility Assistant Service allows an … | |
| CVE-2026-69349 | Low | 0.8% | 5.7 | Use of uninitialized resource in Windows Management Instrumentation allows an au… | |
| CVE-2026-69803 | Low | 0.8% | 5.9 | Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to dis… | |
| CVE-2026-69929 | Low | 0.8% | 5.9 | Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to dis… | |
| CVE-2026-70124 | Low | 0.8% | 5.9 | Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to dis… | |
| CVE-2026-69930 | Low | 0.8% | 5.9 | Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to dis… | |
| CVE-2026-61921 | Low | 0.8% | 6.5 | Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to d… | |
| CVE-2026-61924 | Low | 0.8% | 6.5 | Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to d… | |
| CVE-2021-38632 | Low | 0.8% | 5.7 | Windows BitLocker Security Feature Bypass Vulnerability | |
| CVE-2026-69372 | Low | 0.8% | 5.7 | Out-of-bounds read in Windows Network File System allows an authorized attacker … | |
| CVE-2021-31961 | Low | 0.8% | 6.1 | Windows InstallService Elevation of Privilege Vulnerability | |
| CVE-2026-42914 | Low | 0.8% | 5.3 | Out-of-bounds read in Windows Kerberos allows an authorized attacker to deny ser… | |
| CVE-2022-41064 | Low | 0.8% | 5.8 | .NET Framework Information Disclosure Vulnerability | |
| CVE-2021-33744 | Low | 0.8% | 5.3 | Windows Secure Kernel Mode Security Feature Bypass Vulnerability | |
| CVE-2022-41098 | Low | 0.8% | 5.5 | Windows GDI+ Information Disclosure Vulnerability | |
| CVE-2024-21340 | Low | 0.8% | 4.6 | Windows Kernel Information Disclosure Vulnerability | |
| CVE-2026-20834 | Low | 0.8% | 4.6 | Absolute path traversal in Windows Shell allows an unauthorized attacker to perf… | |
| CVE-2026-73019 | Low | 0.7% | 4.3 | Improper resolution of path equivalence in Windows URL Moniker allows an unautho… | |
| CVE-2024-38254 | Low | 0.7% | 5.5 | Windows Authentication Information Disclosure Vulnerability | |
| CVE-2021-33765 | Low | 0.7% | 6.2 | Windows Installer Spoofing Vulnerability | |
| CVE-2024-38235 | Low | 0.7% | 6.5 | Windows Hyper-V Denial of Service Vulnerability | |
| CVE-2024-38256 | Low | 0.7% | 5.5 | Windows Kernel-Mode Driver Information Disclosure Vulnerability | |
| CVE-2026-20821 | Low | 0.7% | 6.2 | Exposure of sensitive information to an unauthorized actor in Windows Remote Pro… | |
| CVE-2021-42288 | Low | 0.7% | 5.7 | Windows Hello Security Feature Bypass Vulnerability | |
| CVE-2026-56649 | Low | 0.7% | 5.9 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-20932 | Low | 0.7% | 5.5 | Exposure of sensitive information to an unauthorized actor in Windows File Explo… | |
| CVE-2021-42274 | Low | 0.7% | 6.8 | Windows Hyper-V Discrete Device Assignment (DDA) Denial of Service Vulnerability | |
| CVE-2026-68819 | Low | 0.7% | 5.9 | Buffer over-read in Windows Network File System allows an unauthorized attacker … | |
| CVE-2026-20823 | Low | 0.7% | 5.5 | Exposure of sensitive information to an unauthorized actor in Windows File Explo… | |
| CVE-2026-20827 | Low | 0.7% | 5.5 | Exposure of sensitive information to an unauthorized actor in Tablet Windows Use… | |
| CVE-2026-69415 | Low | 0.7% | 6.8 | Missing authentication for critical function in Windows DHCP Server allows an au… | |
| CVE-2022-38015 | Low | 0.7% | 6.5 | Windows Hyper-V Denial of Service Vulnerability | |
| CVE-2026-50485 | Low | 0.7% | 4.5 | Buffer over-read in Windows Hyper-V allows an authorized attacker to deny servic… | |
| CVE-2026-70091 | Low | 0.7% | 5.9 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-20828 | Low | 0.7% | 4.6 | Out-of-bounds read in Windows Internet Connection Sharing (ICS) allows an unauth… | |
| CVE-2026-65794 | Low | 0.7% | 6.5 | Buffer over-read in Windows SMB Client allows an unauthorized attacker to disclo… | |
| CVE-2024-21377 | Low | 0.6% | 5.5 | Windows DNS Information Disclosure Vulnerability | |
| CVE-2026-69637 | Low | 0.6% | 5.7 | Out-of-bounds read in Windows DHCP Server allows an authorized attacker to deny … | |
| CVE-2026-69679 | Low | 0.6% | 5.7 | Out-of-bounds read in Windows DHCP Server allows an authorized attacker to deny … | |
| CVE-2021-34493 | Low | 0.6% | 6.7 | Windows Partition Management Driver Elevation of Privilege Vulnerability | |
| CVE-2023-36889 | Low | 0.6% | 5.5 | Windows Group Policy Security Feature Bypass Vulnerability | |
| CVE-2026-78446 | Low | 0.6% | 5.3 | Use after free in Windows Distributed File System (DFS) allows an authorized att… | |
| CVE-2026-68898 | Low | 0.6% | 6.5 | Out-of-bounds read in Windows iSCSI allows an unauthorized attacker to deny serv… | |
| CVE-2026-69297 | Low | 0.6% | 6.5 | Storing passwords in a recoverable format in Windows DHCP Server allows an autho… | |
| CVE-2026-62750 | Low | 0.6% | 6.5 | Partial string comparison in Windows HTTP Protocol Stack allows an unauthorized … | |
| CVE-2026-69405 | Low | 0.6% | 5.7 | Missing release of memory after effective lifetime in Windows DHCP Server allows… | |
| CVE-2026-69416 | Low | 0.6% | 5.7 | Buffer over-read in Windows DHCP Server allows an authorized attacker to deny se… | |
| CVE-2023-21694 | Low | 0.6% | 6.8 | Windows Fax Service Remote Code Execution Vulnerability |