Microsoft Windows Server 2008
By the Year
In 2024 there have been 92 vulnerabilities in Microsoft Windows Server 2008 with an average score of 7.5 out of ten. Last year Windows Server 2008 had 363 security vulnerabilities published. Right now, Windows Server 2008 is on track to have less security vulnerabilities in 2024 than it did last year. Last year, the average CVE base score was greater by 0.01
Year | Vulnerabilities | Average Score |
---|---|---|
2024 | 92 | 7.54 |
2023 | 363 | 7.55 |
2022 | 334 | 7.56 |
2021 | 279 | 7.62 |
2020 | 382 | 7.42 |
2019 | 314 | 7.27 |
2018 | 158 | 6.47 |
It may take a day or so for new Windows Server 2008 vulnerabilities to show up in the stats or in the list of recent security vulnerabilties. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Microsoft Windows Server 2008 Security Vulnerabilities
Windows NTLM Spoofing Vulnerability
CVE-2024-30081
7.1 - High
- July 09, 2024
Windows NTLM Spoofing Vulnerability
Windows iSCSI Service Denial of Service Vulnerability
CVE-2024-35270
5.3 - Medium
- July 09, 2024
Windows iSCSI Service Denial of Service Vulnerability
Windows Remote Desktop Licensing Service Denial of Service Vulnerability
CVE-2024-38073
7.5 - High
- July 09, 2024
Windows Remote Desktop Licensing Service Denial of Service Vulnerability
Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability
CVE-2024-38074
9.8 - Critical
- July 09, 2024
Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability
Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability
CVE-2024-38077
9.8 - Critical
- July 09, 2024
Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability
Windows Graphics Component Elevation of Privilege Vulnerability
CVE-2024-38079
7.8 - High
- July 09, 2024
Windows Graphics Component Elevation of Privilege Vulnerability
Windows Graphics Component Elevation of Privilege Vulnerability
CVE-2024-38085
7.8 - High
- July 09, 2024
Windows Graphics Component Elevation of Privilege Vulnerability
Microsoft WS-Discovery Denial of Service Vulnerability
CVE-2024-38091
7.5 - High
- July 09, 2024
Microsoft WS-Discovery Denial of Service Vulnerability
Windows Network Driver Interface Specification (NDIS) Denial of Service Vulnerability
CVE-2024-38048
6.5 - Medium
- July 09, 2024
Windows Network Driver Interface Specification (NDIS) Denial of Service Vulnerability
Out-of-bounds Read
Windows Distributed Transaction Coordinator Remote Code Execution Vulnerability
CVE-2024-38049
8.1 - High
- July 09, 2024
Windows Distributed Transaction Coordinator Remote Code Execution Vulnerability
Externally Controlled Reference to a Resource in Another Sphere
Windows Workstation Service Elevation of Privilege Vulnerability
CVE-2024-38050
7.8 - High
- July 09, 2024
Windows Workstation Service Elevation of Privilege Vulnerability
Integer underflow
Windows Graphics Component Remote Code Execution Vulnerability
CVE-2024-38051
7.8 - High
- July 09, 2024
Windows Graphics Component Remote Code Execution Vulnerability
Memory Corruption
Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability
CVE-2024-38052
7.8 - High
- July 09, 2024
Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability
Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability
CVE-2024-38054
7.8 - High
- July 09, 2024
Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability
Memory Corruption
Microsoft Windows Codecs Library Information Disclosure Vulnerability
CVE-2024-38055
5.5 - Medium
- July 09, 2024
Microsoft Windows Codecs Library Information Disclosure Vulnerability
Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability
CVE-2024-38057
7.8 - High
- July 09, 2024
Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability
Windows Remote Desktop Licensing Service Denial of Service Vulnerability
CVE-2024-38099
5.9 - Medium
- July 09, 2024
Windows Remote Desktop Licensing Service Denial of Service Vulnerability
Windows Fax Service Remote Code Execution Vulnerability
CVE-2024-38104
8.8 - High
- July 09, 2024
Windows Fax Service Remote Code Execution Vulnerability
Buffer Overflow
Microsoft Message Queuing Information Disclosure Vulnerability
CVE-2024-38017
5.5 - Medium
- July 09, 2024
Microsoft Message Queuing Information Disclosure Vulnerability
Microsoft Windows Performance Data Helper Library Remote Code Execution Vulnerability
CVE-2024-38019
7.2 - High
- July 09, 2024
Microsoft Windows Performance Data Helper Library Remote Code Execution Vulnerability
Integer Overflow or Wraparound
Microsoft Windows Performance Data Helper Library Remote Code Execution Vulnerability
CVE-2024-38025
7.2 - High
- July 09, 2024
Microsoft Windows Performance Data Helper Library Remote Code Execution Vulnerability
Memory Corruption
Windows Line Printer Daemon Service Denial of Service Vulnerability
CVE-2024-38027
6.5 - Medium
- July 09, 2024
Windows Line Printer Daemon Service Denial of Service Vulnerability
Microsoft Windows Performance Data Helper Library Remote Code Execution Vulnerability
CVE-2024-38028
7.2 - High
- July 09, 2024
Microsoft Windows Performance Data Helper Library Remote Code Execution Vulnerability
Out-of-bounds Read
Windows Online Certificate Status Protocol (OCSP) Server Denial of Service Vulnerability
CVE-2024-38031
7.5 - High
- July 09, 2024
Windows Online Certificate Status Protocol (OCSP) Server Denial of Service Vulnerability
Windows Filtering Platform Elevation of Privilege Vulnerability
CVE-2024-38034
7.8 - High
- July 09, 2024
Windows Filtering Platform Elevation of Privilege Vulnerability
Windows Imaging Component Remote Code Execution Vulnerability
CVE-2024-38060
8.8 - High
- July 09, 2024
Windows Imaging Component Remote Code Execution Vulnerability
Memory Corruption
DCOM Remote Cross-Session Activation Elevation of Privilege Vulnerability
CVE-2024-38061
7.5 - High
- July 09, 2024
DCOM Remote Cross-Session Activation Elevation of Privilege Vulnerability
Windows TCP/IP Information Disclosure Vulnerability
CVE-2024-38064
7.5 - High
- July 09, 2024
Windows TCP/IP Information Disclosure Vulnerability
Windows Win32k Elevation of Privilege Vulnerability
CVE-2024-38066
7.8 - High
- July 09, 2024
Windows Win32k Elevation of Privilege Vulnerability
Dangling pointer
Windows Online Certificate Status Protocol (OCSP) Server Denial of Service Vulnerability
CVE-2024-38067
7.5 - High
- July 09, 2024
Windows Online Certificate Status Protocol (OCSP) Server Denial of Service Vulnerability
Windows Online Certificate Status Protocol (OCSP) Server Denial of Service Vulnerability
CVE-2024-38068
7.5 - High
- July 09, 2024
Windows Online Certificate Status Protocol (OCSP) Server Denial of Service Vulnerability
Windows Remote Desktop Licensing Service Denial of Service Vulnerability
CVE-2024-38071
7.5 - High
- July 09, 2024
Windows Remote Desktop Licensing Service Denial of Service Vulnerability
Windows MSHTML Platform Spoofing Vulnerability
CVE-2024-38112
7.5 - High
- July 09, 2024
Windows MSHTML Platform Spoofing Vulnerability
User Interface (UI) Misrepresentation of Critical Information
Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
CVE-2024-35250
7.8 - High
- June 11, 2024
Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
Buffer Overflow
Windows Distributed File System (DFS) Remote Code Execution Vulnerability
CVE-2024-30063
6.7 - Medium
- June 11, 2024
Windows Distributed File System (DFS) Remote Code Execution Vulnerability
Windows Link Layer Topology Discovery Protocol Remote Code Execution Vulnerability
CVE-2024-30074
8 - High
- June 11, 2024
Windows Link Layer Topology Discovery Protocol Remote Code Execution Vulnerability
Windows Link Layer Topology Discovery Protocol Remote Code Execution Vulnerability
CVE-2024-30075
8 - High
- June 11, 2024
Windows Link Layer Topology Discovery Protocol Remote Code Execution Vulnerability
Windows OLE Remote Code Execution Vulnerability
CVE-2024-30077
8 - High
- June 11, 2024
Windows OLE Remote Code Execution Vulnerability
Windows Wi-Fi Driver Remote Code Execution Vulnerability
CVE-2024-30078
8.8 - High
- June 11, 2024
Windows Wi-Fi Driver Remote Code Execution Vulnerability
Win32k Elevation of Privilege Vulnerability
CVE-2024-30082
7.8 - High
- June 11, 2024
Win32k Elevation of Privilege Vulnerability
Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
CVE-2024-30084
7 - High
- June 11, 2024
Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
TOCTTOU
Win32k Elevation of Privilege Vulnerability
CVE-2024-30087
7.8 - High
- June 11, 2024
Win32k Elevation of Privilege Vulnerability
Win32k Elevation of Privilege Vulnerability
CVE-2024-30091
7.8 - High
- June 11, 2024
Win32k Elevation of Privilege Vulnerability
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVE-2024-30094
7.8 - High
- June 11, 2024
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
Microsoft Streaming Service Elevation of Privilege Vulnerability
CVE-2024-30090
7 - High
- June 11, 2024
Microsoft Streaming Service Elevation of Privilege Vulnerability
Buffer Overflow
Windows Storage Elevation of Privilege Vulnerability
CVE-2024-30093
7.3 - High
- June 11, 2024
Windows Storage Elevation of Privilege Vulnerability
insecure temporary file
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVE-2024-30095
7.8 - High
- June 11, 2024
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
Memory Corruption
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
CVE-2024-30080
9.8 - Critical
- June 11, 2024
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
Dangling pointer
Win32k Elevation of Privilege Vulnerability
CVE-2024-30030
7.8 - High
- May 14, 2024
Win32k Elevation of Privilege Vulnerability
NULL Pointer Dereference
Windows Authentication Elevation of Privilege Vulnerability
CVE-2024-29056
4.3 - Medium
- April 09, 2024
Windows Authentication Elevation of Privilege Vulnerability
Use of a Broken or Risky Cryptographic Algorithm
Windows Error Reporting Service Elevation of Privilege Vulnerability
CVE-2024-26169
7.8 - High
- March 12, 2024
Windows Error Reporting Service Elevation of Privilege Vulnerability
Certain DNSSEC aspects of the DNS protocol (in RFC 4033, 4034, 4035, 6840, and related RFCs)
CVE-2023-50387
7.5 - High
- February 14, 2024
Certain DNSSEC aspects of the DNS protocol (in RFC 4033, 4034, 4035, 6840, and related RFCs) allow remote attackers to cause a denial of service (CPU consumption) via one or more DNSSEC responses, aka the "KeyTrap" issue. One of the concerns is that, when there is a zone with many DNSKEY and RRSIG records, the protocol specification implies that an algorithm must evaluate all combinations of DNSKEY and RRSIG records.
Allocation of Resources Without Limits or Throttling
Windows Kernel Information Disclosure Vulnerability
CVE-2024-21340
4.6 - Medium
- February 13, 2024
Windows Kernel Information Disclosure Vulnerability
Microsoft Message Queuing (MSMQ) Elevation of Privilege Vulnerability
CVE-2024-21405
7 - High
- February 13, 2024
Microsoft Message Queuing (MSMQ) Elevation of Privilege Vulnerability
Windows OLE Remote Code Execution Vulnerability
CVE-2024-21372
8.8 - High
- February 13, 2024
Windows OLE Remote Code Execution Vulnerability
Windows Printing Service Spoofing Vulnerability
CVE-2024-21406
7.5 - High
- February 13, 2024
Windows Printing Service Spoofing Vulnerability
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
CVE-2024-21375
8.8 - High
- February 13, 2024
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
CVE-2024-21370
8.8 - High
- February 13, 2024
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
CVE-2024-21369
8.8 - High
- February 13, 2024
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
CVE-2024-21368
8.8 - High
- February 13, 2024
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
CVE-2024-21367
8.8 - High
- February 13, 2024
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
CVE-2024-21366
8.8 - High
- February 13, 2024
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
CVE-2024-21365
8.8 - High
- February 13, 2024
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
CVE-2024-21361
8.8 - High
- February 13, 2024
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
CVE-2024-21360
8.8 - High
- February 13, 2024
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
CVE-2024-21359
8.8 - High
- February 13, 2024
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
CVE-2024-21358
8.8 - High
- February 13, 2024
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
CVE-2024-21352
8.8 - High
- February 13, 2024
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
CVE-2024-21350
8.8 - High
- February 13, 2024
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
CVE-2024-21391
8.8 - High
- February 13, 2024
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
Microsoft ODBC Driver Remote Code Execution Vulnerability
CVE-2024-21347
7.5 - High
- February 13, 2024
Microsoft ODBC Driver Remote Code Execution Vulnerability
Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability
CVE-2024-21356
6.5 - Medium
- February 13, 2024
Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability
Microsoft ActiveX Data Objects Remote Code Execution Vulnerability
CVE-2024-21349
8.8 - High
- February 13, 2024
Microsoft ActiveX Data Objects Remote Code Execution Vulnerability
Windows Message Queuing Client (MSMQC) Information Disclosure
CVE-2024-20663
6.5 - Medium
- January 09, 2024
Windows Message Queuing Client (MSMQC) Information Disclosure
Windows Group Policy Elevation of Privilege Vulnerability
CVE-2024-20657
7 - High
- January 09, 2024
Windows Group Policy Elevation of Privilege Vulnerability
Microsoft Common Log File System Elevation of Privilege Vulnerability
CVE-2024-20653
7.8 - High
- January 09, 2024
Microsoft Common Log File System Elevation of Privilege Vulnerability
Microsoft Online Certificate Status Protocol (OCSP) Remote Code Execution Vulnerability
CVE-2024-20655
6.6 - Medium
- January 09, 2024
Microsoft Online Certificate Status Protocol (OCSP) Remote Code Execution Vulnerability
Windows HTML Platforms Security Feature Bypass Vulnerability
CVE-2024-20652
8.1 - High
- January 09, 2024
Windows HTML Platforms Security Feature Bypass Vulnerability
Microsoft ODBC Driver Remote Code Execution Vulnerability
CVE-2024-20654
8 - High
- January 09, 2024
Microsoft ODBC Driver Remote Code Execution Vulnerability
Microsoft Message Queuing Denial of Service Vulnerability
CVE-2024-20661
7.5 - High
- January 09, 2024
Microsoft Message Queuing Denial of Service Vulnerability
Resource Exhaustion
Microsoft Message Queuing Information Disclosure Vulnerability
CVE-2024-21314
6.5 - Medium
- January 09, 2024
Microsoft Message Queuing Information Disclosure Vulnerability
Windows TCP/IP Information Disclosure Vulnerability
CVE-2024-21313
5.3 - Medium
- January 09, 2024
Windows TCP/IP Information Disclosure Vulnerability
Windows Cryptographic Services Information Disclosure Vulnerability
CVE-2024-21311
5.5 - Medium
- January 09, 2024
Windows Cryptographic Services Information Disclosure Vulnerability
Remote Desktop Client Remote Code Execution Vulnerability
CVE-2024-21307
7.5 - High
- January 09, 2024
Remote Desktop Client Remote Code Execution Vulnerability
Race Condition
Microsoft Local Security Authority Subsystem Service Information Disclosure Vulnerability
CVE-2024-20692
5.7 - Medium
- January 09, 2024
Microsoft Local Security Authority Subsystem Service Information Disclosure Vulnerability
Exposure of Resource to Wrong Sphere
Microsoft Message Queuing Information Disclosure Vulnerability
CVE-2024-20664
6.5 - Medium
- January 09, 2024
Microsoft Message Queuing Information Disclosure Vulnerability
Windows Online Certificate Status Protocol (OCSP) Information Disclosure Vulnerability
CVE-2024-20662
4.9 - Medium
- January 09, 2024
Windows Online Certificate Status Protocol (OCSP) Information Disclosure Vulnerability
Windows Themes Information Disclosure Vulnerability
CVE-2024-20691
4.7 - Medium
- January 09, 2024
Windows Themes Information Disclosure Vulnerability
Win32k Elevation of Privilege Vulnerability
CVE-2024-20683
7.8 - High
- January 09, 2024
Win32k Elevation of Privilege Vulnerability
Windows Message Queuing Client (MSMQC) Information Disclosure
CVE-2024-20680
6.5 - Medium
- January 09, 2024
Windows Message Queuing Client (MSMQC) Information Disclosure
Windows Kerberos Security Feature Bypass Vulnerability
CVE-2024-20674
8.8 - High
- January 09, 2024
Windows Kerberos Security Feature Bypass Vulnerability
Authentication Bypass by Spoofing
Microsoft Message Queuing Information Disclosure Vulnerability
CVE-2024-20660
6.5 - Medium
- January 09, 2024
Microsoft Message Queuing Information Disclosure Vulnerability
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVE-2023-35632
7.8 - High
- December 12, 2023
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
CVE-2023-35633
7.8 - High
- December 12, 2023
Windows Kernel Elevation of Privilege Vulnerability
Internet Connection Sharing (ICS) Remote Code Execution Vulnerability
CVE-2023-35630
8.8 - High
- December 12, 2023
Internet Connection Sharing (ICS) Remote Code Execution Vulnerability
Microsoft USBHUB 3.0 Device Driver Remote Code Execution Vulnerability
CVE-2023-35629
6.8 - Medium
- December 12, 2023
Microsoft USBHUB 3.0 Device Driver Remote Code Execution Vulnerability
Windows MSHTML Platform Remote Code Execution Vulnerability
CVE-2023-35628
8.1 - High
- December 12, 2023
Windows MSHTML Platform Remote Code Execution Vulnerability
Windows DNS Spoofing Vulnerability
CVE-2023-35622
7.5 - High
- December 12, 2023
Windows DNS Spoofing Vulnerability
Internet Connection Sharing (ICS) Denial of Service Vulnerability
CVE-2023-35642
6.5 - Medium
- December 12, 2023
Internet Connection Sharing (ICS) Denial of Service Vulnerability
Windows Telephony Server Elevation of Privilege Vulnerability
CVE-2023-36005
8.1 - High
- December 12, 2023
Windows Telephony Server Elevation of Privilege Vulnerability
Stay on top of Security Vulnerabilities
Want an email whenever new vulnerabilities are published for Microsoft Windows 10 1507 or by Microsoft? Click the Watch button to subscribe.
![subscribe](/images/undraw_subscriber_vabu.png)