microsoft / windows_server_2019
1,452 known vulnerabilities in microsoft windows_server_2019.
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-70586 | Medium | 0.8% | 8.8 | Heap-based buffer overflow in Windows Paint allows an unauthorized attacker to e… | |
| CVE-2026-73006 | Medium | 0.8% | 8.8 | Stack-based buffer overflow in Microsoft Graphics Component allows an unauthoriz… | |
| CVE-2024-21363 | Medium | 0.8% | 7.8 | Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability | |
| CVE-2026-49164 | Medium | 0.8% | 8.1 | Heap-based buffer overflow in Active Directory Domain Services allows an unautho… | |
| CVE-2026-50439 | Medium | 0.8% | 8.1 | Use after free in Microsoft Message Queuing Queue Manager allows an unauthorized… | |
| CVE-2026-50694 | Medium | 0.8% | 8.1 | Use after free in Windows Secure Socket Tunneling Protocol (SSTP) allows an unau… | |
| CVE-2026-57087 | Medium | 0.8% | 8.8 | Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unaut… | |
| CVE-2021-26890 | Medium | 0.8% | 7.8 | Application Virtualization Remote Code Execution Vulnerability | |
| CVE-2023-21817 | Medium | 0.8% | 7.8 | Windows Kerberos Elevation of Privilege Vulnerability | |
| CVE-2026-50444 | Medium | 0.8% | 8.8 | Missing authentication for critical function in Windows Server Update Service al… | |
| CVE-2026-68839 | Medium | 0.8% | 9.8 | Heap-based buffer overflow in Windows USB Mass Storage Class Driver allows an un… | |
| CVE-2026-70587 | Medium | 0.8% | 7.5 | Improper null termination in Windows Remote Desktop Protocol allows an unauthori… | |
| CVE-2026-71330 | Medium | 0.8% | 7.5 | Exposure of sensitive system information to an unauthorized control sphere in Wi… | |
| CVE-2026-69503 | Medium | 0.8% | 8.0 | Stack-based buffer overflow in Windows USB Driver allows an authorized attacker … | |
| CVE-2026-69505 | Medium | 0.8% | 8.0 | Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate priv… | |
| CVE-2026-69875 | Medium | 0.8% | 8.0 | Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elev… | |
| CVE-2023-21822 | Medium | 0.8% | 7.8 | Windows Graphics Component Elevation of Privilege Vulnerability | |
| CVE-2021-26901 | Medium | 0.8% | 7.8 | Windows Event Tracing Elevation of Privilege Vulnerability | |
| CVE-2024-38243 | Medium | 0.8% | 7.8 | Kernel Streaming Service Driver Elevation of Privilege Vulnerability | |
| CVE-2024-38238 | Medium | 0.8% | 7.8 | Kernel Streaming Service Driver Elevation of Privilege Vulnerability | |
| CVE-2024-38119 | Medium | 0.8% | 7.5 | Windows Network Address Translation (NAT) Remote Code Execution Vulnerability | |
| CVE-2026-20848 | Medium | 0.8% | 7.5 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-20934 | Medium | 0.8% | 7.5 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-69461 | Medium | 0.8% | 8.8 | Stack-based buffer overflow in Windows NTFS allows an unauthorized attacker to e… | |
| CVE-2026-50500 | Medium | 0.7% | 7.5 | Use after free in Windows Netlogon allows an authorized attacker to elevate priv… | |
| CVE-2026-50505 | Medium | 0.7% | 7.5 | Use after free in Windows Message Queuing allows an authorized attacker to execu… | |
| CVE-2023-21805 | Medium | 0.7% | 7.8 | Windows MSHTML Platform Remote Code Execution Vulnerability | |
| CVE-2026-80096 | Medium | 0.7% | 8.8 | Out-of-bounds read in Windows Remote Desktop Services allows an authorized attac… | |
| CVE-2021-26864 | Medium | 0.7% | 8.4 | Windows Virtual Registry Provider Elevation of Privilege Vulnerability | |
| CVE-2026-62792 | Medium | 0.7% | 8.1 | Stack-based buffer overflow in Windows TCP/IP allows an unauthorized attacker to… | |
| CVE-2026-69620 | Medium | 0.7% | 8.1 | Stack-based buffer overflow in Windows DHCP Server allows an unauthorized attack… | |
| CVE-2026-69989 | Medium | 0.7% | 8.1 | Use after free in DNS Server allows an unauthorized attacker to execute code ove… | |
| CVE-2026-50686 | Medium | 0.7% | 8.1 | Access of resource using incompatible type ('type confusion') in Windows OLE all… | |
| CVE-2026-69332 | Medium | 0.7% | 8.0 | Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate priv… | |
| CVE-2026-69423 | Medium | 0.7% | 8.0 | Heap-based buffer overflow in Windows USB Video Driver allows an authorized atta… | |
| CVE-2026-69727 | Medium | 0.7% | 8.0 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-69773 | Medium | 0.7% | 8.0 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-69826 | Medium | 0.7% | 8.0 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-50369 | Medium | 0.7% | 8.8 | Use after free in Windows Remote Desktop Services allows an authorized attacker … | |
| CVE-2021-26426 | Medium | 0.7% | 7.0 | Windows User Account Profile Picture Elevation of Privilege Vulnerability | |
| CVE-2021-40447 | Medium | 0.7% | 7.8 | Windows Print Spooler Elevation of Privilege Vulnerability | |
| CVE-2024-38250 | Medium | 0.7% | 7.8 | Windows Graphics Component Elevation of Privilege Vulnerability | |
| CVE-2024-38046 | Medium | 0.7% | 7.8 | PowerShell Elevation of Privilege Vulnerability | |
| CVE-2024-38247 | Medium | 0.7% | 7.8 | Windows Graphics Component Elevation of Privilege Vulnerability | |
| CVE-2026-20837 | Medium | 0.7% | 7.8 | Heap-based buffer overflow in Windows Media allows an unauthorized attacker to e… | |
| CVE-2021-26870 | Medium | 0.7% | 7.8 | Windows Projected File System Elevation of Privilege Vulnerability | |
| CVE-2021-26872 | Medium | 0.7% | 7.8 | Windows Event Tracing Elevation of Privilege Vulnerability | |
| CVE-2021-26880 | Medium | 0.7% | 7.8 | Windows Storage Spaces Controller Elevation of Privilege Vulnerability | |
| CVE-2021-34514 | Medium | 0.7% | 7.8 | Windows Kernel Elevation of Privilege Vulnerability | |
| CVE-2026-69510 | Medium | 0.7% | 8.1 | Stack-based buffer overflow in Windows DHCP Server allows an unauthorized attack… |