📦

windows_server_2008

Vendor: microsoft

Actively Exploited 141 CISA KEV List
PoC / Exploits 454 Code Available
Total RCEs 810 Remote Access
Total CVEs 16698 Total Indexed
Avg. EPSS 8.39% Exploit Prob.
Latest CVE CVE-2026-20940 Jan 13

Security Vulnerability Index

Page 16 / 1670
8.8 CVSS

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.

EPSS: 0.89%
6.7 CVSS

Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally.

EPSS: 0.43%
8.8 CVSS

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.

EPSS: 0.75%
7.8 CVSS

Integer overflow or wraparound in Microsoft Graphics Component allows an authorized attacker to execute code locally.

EPSS: 0.27%
7.8 CVSS

Heap-based buffer overflow in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally.

EPSS: 0.27%
7.8 CVSS
CVE-2025-49730
Exploit Found

Time-of-check time-of-use (toctou) race condition in Microsoft Windows QoS scheduler allows an authorized attacker to elevate privileges locally.

EPSS: 0.59%
8.8 CVSS

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.

EPSS: 0.57%
7.0 CVSS

Heap-based buffer overflow in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.

EPSS: 0.35%
5.7 CVSS

Uncontrolled resource consumption in Windows Print Spooler Components allows an authorized attacker to deny service over an adjacent network.

EPSS: 0.48%
7.8 CVSS

Heap-based buffer overflow in Windows Fast FAT Driver allows an unauthorized attacker to elevate privileges locally.

EPSS: 0.48%