CVE Vulnerabilities for "product:windows_server_2008"

Showing 1-10 of 4,018 CVEs (filtered from 316,407 total)

Heap-based buffer overflow in Internet Explorer allows an unauthorized attacker to execute code over a network.

HIGH 8.8
EPSS 0.1%
10/14/2025
2025

Concurrent execution using shared resource with improper synchronization ('race condition') in Inbox COM Objects allows an unauthorized attacker to execute code locally.

HIGH 7
EPSS 0.1%
10/14/2025
2025

Improper authentication in Windows SMB Client allows an unauthorized attacker to perform tampering over a network.

LOW 3.1
EPSS 0.0%
10/14/2025
2025

Improper validation of specified type of input in Windows Authentication Methods allows an authorized attacker to elevate privileges locally.

HIGH 7.8
EPSS 0.1%
10/14/2025
2025

Improper validation of specified type of input in Windows Authentication Methods allows an authorized attacker to elevate privileges locally.

HIGH 7.8
EPSS 0.1%
10/14/2025
2025

Improper validation of specified type of input in Windows Authentication Methods allows an authorized attacker to elevate privileges locally.

HIGH 7.8
EPSS 0.1%
10/14/2025
2025

Heap-based buffer overflow in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

HIGH 7.8
EPSS 0.1%
10/14/2025
2025
CVE-2025-59230
⚠️🧬

Improper access control in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges locally.

HIGH 7.8
EPSS 1.5%
10/14/2025
2025

Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an unauthorized attacker to perform spoofing over a network.

MEDIUM 6.5
EPSS 0.1%
10/14/2025
2025

Out-of-bounds read in Windows MapUrlToZone allows an unauthorized attacker to disclose information over a network.

HIGH 7.1
EPSS 0.1%
10/14/2025
2025
Page 1 of 2