📦

windows_server_2008

Vendor: microsoft

Actively Exploited 141 CISA KEV List
PoC / Exploits 454 Code Available
Total RCEs 810 Remote Access
Total CVEs 16698 Total Indexed
Avg. EPSS 8.39% Exploit Prob.
Latest CVE CVE-2026-20940 Jan 13

Security Vulnerability Index

Page 10 / 1670
6.7 CVSS

Access of resource using incompatible type ('type confusion') in Windows Defender Firewall Service allows an authorized attacker to elevate privileges locally.

EPSS: 0.47%
7.8 CVSS

Use after free in Windows BitLocker allows an authorized attacker to elevate privileges locally.

EPSS: 0.47%
7.3 CVSS

Use after free in Windows BitLocker allows an authorized attacker to elevate privileges locally.

EPSS: 0.62%
7.8 CVSS

Integer overflow or wraparound in Windows SPNEGO Extended Negotiation allows an authorized attacker to elevate privileges locally.

EPSS: 0.27%
7.8 CVSS

Local Security Authority Subsystem Service Elevation of Privilege Vulnerability

EPSS: 0.42%
8.8 CVSS

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.

EPSS: 0.85%
8.8 CVSS
CVE-2025-54110
Exploit Found

Integer overflow or wraparound in Windows Kernel allows an authorized attacker to elevate privileges locally.

EPSS: 3.82%
6.7 CVSS

Access of resource using incompatible type ('type confusion') in Windows Defender Firewall Service allows an authorized attacker to elevate privileges locally.

EPSS: 0.45%
4.3 CVSS

Improper resolution of path equivalence in Windows MapUrlToZone allows an unauthorized attacker to bypass a security feature over a network.

EPSS: 0.86%
6.7 CVSS

Access of resource using incompatible type ('type confusion') in Windows Defender Firewall Service allows an authorized attacker to elevate privileges locally.

EPSS: 0.45%