📦

windows_server_2008

Vendor: microsoft

Actively Exploited 141 CISA KEV List
PoC / Exploits 454 Code Available
Total RCEs 810 Remote Access
Total CVEs 16698 Total Indexed
Avg. EPSS 8.39% Exploit Prob.
Latest CVE CVE-2026-20940 Jan 13

Security Vulnerability Index

Page 13 / 1670
5.7 CVSS

Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to disclose information over a network.

EPSS: 1.04%
7.8 CVSS

Use after free in Desktop Windows Manager allows an authorized attacker to execute code locally.

EPSS: 0.41%
7.8 CVSS

Heap-based buffer overflow in Kernel Streaming WOW Thunk Service Driver allows an authorized attacker to elevate privileges locally.

EPSS: 0.70%
5.7 CVSS

Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to disclose information over a network.

EPSS: 1.04%
7.0 CVSS

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

EPSS: 0.41%
8.8 CVSS

Access of resource using incompatible type ('type confusion') in Windows Message Queuing allows an authorized attacker to execute code over a network.

EPSS: 5.63%
8.8 CVSS

Access of resource using incompatible type ('type confusion') in Windows Message Queuing allows an authorized attacker to execute code over a network.

EPSS: 5.63%
8.8 CVSS

Access of resource using incompatible type ('type confusion') in Windows Message Queuing allows an authorized attacker to execute code over a network.

EPSS: 1.01%
7.8 CVSS

Null pointer dereference in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

EPSS: 0.40%
7.0 CVSS

Use after free in Kernel Transaction Manager allows an authorized attacker to elevate privileges locally.

EPSS: 0.33%