CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

microsoft

windows_server_2008

490 known vulnerabilities · sorted by CVSS score

CVE-2020-1350
CRITICAL10.0

A remote code execution vulnerability exists in Windows Domain Name System servers when they fail to properly handle requests, aka 'Windows DNS Server Remote Code Execution Vulnerability'.

microsoft / windows_server_2008+5
Network
Published Jul 14, 2020
Page 1 of 25
CVE-2020-1467
CRITICAL10.0

An elevation of privilege vulnerability exists when Windows improperly handles hard links. An attacker who successfully exploited this vulnerability could overwrite a targeted file leading to an elevated status. To exploit this vulnerability, an attacker would first have to log on to the system. An attacker could then run a specially crafted application that could exploit the vulnerability and take control of an affected system. The security update addresses the vulnerability by correcting how Windows handles hard links.

microsoft / windows_10+16
Network
Published Aug 17, 2020
CVE-2021-26424
CRITICAL9.9

Windows TCP/IP Remote Code Execution Vulnerability

microsoft / windows_10+17
Network
Published Aug 12, 2021
CVE-2020-1112
CRITICAL9.9

An elevation of privilege vulnerability exists when the Windows Background Intelligent Transfer Service (BITS) IIS module improperly handles uploaded content, aka 'Windows Background Intelligent Transfer Service Elevation of Privilege Vulnerability'.

microsoft / windows_10+22
Network
Published May 21, 2020
CVE-2021-28476
CRITICAL9.9

Windows Hyper-V Remote Code Execution Vulnerability

microsoft / windows_10+17
Network
Published May 11, 2021
CVE-2021-26897
CRITICAL9.8

Windows DNS Server Remote Code Execution Vulnerability

microsoft / windows_server_2008+9
Network
Published Mar 11, 2021
CVE-2021-24074
CRITICAL9.8

Windows TCP/IP Remote Code Execution Vulnerability

microsoft / windows_10+17
Network
Published Feb 25, 2021
CVE-2021-26877
CRITICAL9.8

Windows DNS Server Remote Code Execution Vulnerability

microsoft / windows_server_2008+8
Network
Published Mar 11, 2021
CVE-2021-26895
CRITICAL9.8

Windows DNS Server Remote Code Execution Vulnerability

microsoft / windows_server_2008+9
Network
Published Mar 11, 2021
CVE-2020-17051
CRITICAL9.8

Windows Network File System Remote Code Execution Vulnerability

microsoft / windows_server_2008+9
Network
Published Nov 11, 2020
CVE-2021-24094
CRITICAL9.8

Windows TCP/IP Remote Code Execution Vulnerability

microsoft / windows_10+18
Network
Published Feb 25, 2021
CVE-2021-24077
CRITICAL9.8

Windows Fax Service Remote Code Execution Vulnerability

microsoft / windows_10+18
Network
Published Feb 25, 2021
CVE-2021-24078
CRITICAL9.8

Windows DNS Server Remote Code Execution Vulnerability

microsoft / windows_server_2008+8
Network
Published Feb 25, 2021
CVE-2021-26894
CRITICAL9.8

Windows DNS Server Remote Code Execution Vulnerability

microsoft / windows_server_2008+9
Network
Published Mar 11, 2021
CVE-2021-26893
CRITICAL9.8

Windows DNS Server Remote Code Execution Vulnerability

microsoft / windows_server_2008+8
Network
Published Mar 11, 2021
CVE-2021-31962
CRITICAL9.4

Kerberos AppContainer Security Feature Bypass Vulnerability

microsoft / windows_10+17
Network
Published Jun 8, 2021
CVE-2020-1041
CRITICAL9.0

A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Hyper-V RemoteFX vGPU Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1032, CVE-2020-1036, CVE-2020-1040, CVE-2020-1042, CVE-2020-1043.

microsoft / windows_server_2008+3
Adjacent
Published Jul 14, 2020
CVE-2020-1043
CRITICAL9.0

A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Hyper-V RemoteFX vGPU Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1032, CVE-2020-1036, CVE-2020-1040, CVE-2020-1041, CVE-2020-1042.

microsoft / windows_server_2008+3
Adjacent
Published Jul 14, 2020
CVE-2020-1042
CRITICAL9.0

A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Hyper-V RemoteFX vGPU Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1032, CVE-2020-1036, CVE-2020-1040, CVE-2020-1041, CVE-2020-1043.

microsoft / windows_server_2008+3
Adjacent
Published Jul 14, 2020
CVE-2020-1032
CRITICAL9.0

A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Hyper-V RemoteFX vGPU Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1036, CVE-2020-1040, CVE-2020-1041, CVE-2020-1042, CVE-2020-1043.

microsoft / windows_server_2008+3
Adjacent
Published Jul 14, 2020