171 exploited vulnerabilities in Windows Server 2008
- Vendors
- Microsoft, Adobe, Apple
- With known exploits
- 171
- Affected Microsoft Windows 10 1507 versions
- < 10.0.10240.19805, 10.0.10240.19325
- Affected Microsoft Windows 10 1607 versions
- All versions
- Affected Microsoft Windows 10 1809 versions
- < 10.0.17763.4131, 10.0.17763.3046
- Affected Microsoft Windows 10 20h2 versions
- < 10.0.19042.2728, 10.0.19042.1766
- Affected Microsoft Windows 10 21h2 versions
- < 10.0.19044.2728, 10.0.19044.1766
- Affected Microsoft Windows 10 22h2 versions
- < 10.0.19045.2728
- Affected Microsoft Windows 11 21h2 versions
- < 10.0.22000.1696, 10.0.22000.739
- Affected Microsoft Windows 11 22h2 versions
- < 10.0.22000.1413
Vulnerabilities with exploits
Highest CVSS first — 47 of these already have exploit code on Sploitus
CVE-2023-23415
CVE-2022-30190 62 exploits
CVE-2017-8543
CVE-2016-7182 1 exploit
CVE-2016-3236 2 exploits
NetBIOS Response BadTunnel Brute Force Spoof (NAT Tunnel)NetBIOS Response "BadTunnel" Brute Force Spoof (NAT Tunnel)
CVE-2014-6321
CVE-2013-3906 6 exploits
Microsoft Tagged Image File Format (TIFF) Integer OverflowMicrosoft Tagged Image File Format (TIFF) Integer Overflow Vulnerability
CVE-2011-2013 2 exploits
Microsoft Windows TCP/IP引用计数溢出漏洞(MS11-083)Microsoft Windows - TCP/IP Stack Reference Counter Integer Overflow (MS11-083)
CVE-2011-0654 3 exploits
CVE-2010-2550 4 exploits
Microsoft Windows SRV.SYS SrvSmbQueryFsInformation Pool Overflow Denial of ServiceMicrosoft SMB Server Zero Size Pool Allocation
CVE-2010-0476 1 exploit
CVE-2010-0269 1 exploit
CVE-2010-0239 2 exploits
Microsoft Windows ICMPv6路由播发缓冲区溢出漏洞(MS10-009)Microsoft Windows Vista/2008 - ICMPv6 Router Advertisement Remote Code Execution
CVE-2010-0231 5 exploits
CVE-2008-4250 16 exploits
CVE-2011-0657 2 exploits
Microsoft Windows DNSAPI.dll LLMNR Buffer Underrun Denial of ServiceMicrosoft Windows DNSAPI.dll LLMNR Buffer Underrun DoS
CVE-2018-8423 1 exploit
CVE-2018-8544 3 exploits
Microsoft VBScript OLEAUT32!VariantClear / scrrun!VBADictionary::put_Item Use-After-FreeVBScript - 'OLEAUT32!VariantClear' and 'scrrun!VBADictionary::put_Item' Use-After-Free
CVE-2018-8420 1 exploit
CVE-2017-8558 2 exploits
Microsoft MsMpEng - mpengine x86 Emulator Heap Corruption in VFS API ExploitMicrosoft MsMpEng - mpengine x86 Emulator Heap Corruption in VFS API
CVE-2017-0290 5 exploits
📄 Microsoft Malware Protection Engine Type ConfusionMicrosoft Malware Protection Engine RCE (CVE-2017-0290)
CVE-2017-8682 2 exploits
Microsoft Windows Kernel - win32k.sys TTF Font Processing - Out-of-Bounds Reads/Writes with MalformeMicrosoft Windows Kernel - 'win32k.sys' '.TTF' Font Processing Out-of-Bounds Reads/Writes with Malformed 'fpgm' table 'win32k!bGeneratePath' (Denial of Service)
CVE-2017-0283 3 exploits
Microsoft Windows - USP10!MergeLigRecords Uniscribe Font Processing Heap-Based Memory CorruptionMicrosoft Windows Uniscribe Remote Code Execution Vulnerability(CVE-2017-0283)
CVE-2017-8464 20 exploits
CVE-2017-0108 2 exploits
Microsoft Windows - USP10!otlList::insertAt Uniscribe Font Processing Heap-Based Buffer Overflow (MSMicrosoft Windows - 'USP10!otlList::insertAt' Uniscribe Font Processing Heap Buffer Overflow (MS17-011)
CVE-2016-3237 4 exploits
CVE-2016-3213 2 exploits
NetBIOS Response BadTunnel Brute Force Spoof (NAT Tunnel)NetBIOS Response "BadTunnel" Brute Force Spoof (NAT Tunnel)
CVE-2016-3223 4 exploits
Microsoft Windows 7 (x32/x64) - Group Policy Privilege Escalation (MS16-072)Microsoft Windows 7 (x86x64) - Group Policy Privilege Escalation (MS16-072)
CVE-2016-0170 2 exploits
Microsoft Windows - gdi32.dll Heap Based Buffer Overflow in ExtEscape() Triggerable via EMR_EXTESCAPMicrosoft Windows - 'gdi32.dll' Heap Buffer Overflow in ExtEscape() Triggerable via EMR_EXTESCAPE EMF Record (MS16-055)
CVE-2016-0145 2 exploits
Microsoft Windows - Kernel win32k.sys TTF Processing EBLC / EBSC Tables Pool Corruption (MS16-039)Microsoft Windows Kernel - 'win32k.sys' TTF Processing EBLC / EBSC Tables Pool Corruption (MS16-039)
CVE-2016-0121 2 exploits
Microsoft Windows - Kernel ATMFD.dll OTF Font Processing Pool-Based Buffer Overflow (MS16-026)Microsoft Windows Kernel - 'ATMFD.dll' OTF Font Processing Pool-Based Buffer Overflow (MS16-026)
CVE-2016-0015 2 exploits
Microsoft Windows devenum.dll!DeviceMoniker::Load() - Heap Corruption Buffer Underflow (MS16-007)Microsoft Windows - devenum.dll!DeviceMoniker::Load() Heap Corruption Buffer Underflow (MS16-007)
CVE-2015-2464 2 exploits
Windows win32k.sys TTF Font Processing win32k!fsc_BLTHoriz Out-of-Bounds Pool Write ExploitMicrosoft Windows - 'win32k.sys' TTF Font Processing win32k!fsc_BLTHoriz Out-of-Bounds Pool Write
CVE-2015-2463 2 exploits
Windows win32k.sys TTF Font Processing win32k!fsc_RemoveDups Out-of-Bounds Pool Memory AccessMicrosoft Windows - 'win32k.sys' TTF Font Processing win32k!fsc_RemoveDups Out-of-Bounds Pool Memory Access
CVE-2015-2462 2 exploits
Windows ATMFD.DLL Out-of-Bounds Read Due to Malformed FDSelect Offset in the CFF Table ExploitMicrosoft Windows - 'ATMFD.DLL' Out-of-Bounds Read Due to Malformed FDSelect Offset in the CFF Table
CVE-2015-2460 3 exploits
Windows ATMFD.DLL CFF table (ATMFD+0x3440b / ATMFD+0x3440e) Invalid Memory AccessWindows ATMFD.DLL CFF table (ATMFD+0x3440b / ATMFD+0x3440e) Invalid Memory Access Exploit
CVE-2015-2459 2 exploits
Windows ATMFD.DLL CFF table (ATMFD+0x34072 / ATMFD+0x3407b) Invalid Memory Access ExploitMicrosoft Windows - 'ATMFD.DLL' CFF table (ATMFD+0x34072 / ATMFD+0x3407b) Invalid Memory Access
CVE-2015-2456 2 exploits
Windows win32k.sys TTF Font Processing win32k!scl_ApplyTranslation Pool-Based Buffer Overflow ExploiMicrosoft Windows - 'win32k.sys' TTF Font Processing win32k!scl_ApplyTranslation Pool-Based Buffer Overflow
CVE-2015-2455 2 exploits
Windows win32k.sys TTF Font Processing IUP[] Program Instruction Pool-Based Buffer Overflow ExploitMicrosoft Windows - 'win32k.sys' TTF Font Processing IUP[] Program Instruction Pool-Based Buffer Overflow
CVE-2015-2432 2 exploits
Windows ATMFD.DLL Write to Uninitialized Address Due to Malformed CFF Table ExploitMicrosoft Windows - 'ATMFD.DLL' Write to Uninitialized Address Due to Malformed CFF Table
CVE-2015-0096 17 exploits
CVE-2015-0081 1 exploit
CVE-2015-2510 1 exploit
CVE-2014-6352 15 exploits
Microsoft-Office-2007-and-2010---OLE-Arbitrary-Command-ExecutionMS14-064 Microsoft Windows OLE Package Manager Code Execution Exploit
CVE-2014-4114 24 exploits
CVE-2013-3174 5 exploits
DirectShow Arbitrary Memory Overwrite Vulnerability (MS13-056)Microsoft DirectShow - Arbitrary Memory Overwrite (MS13-056)
CVE-2013-0810 10 exploits
Microsoft Windows 10 - Theme API (ThemePack) File Parsing ExploitMicrosoft Windows 10 - Theme API ThemePack File Parsing
CVE-2012-0002 12 exploits
Alfred-TryHackMe-Walkthrough-Jenkins-Exploitation-Windows-Token-Privilege-EscalationMS12-020 Microsoft Remote Desktop Checker
CVE-2011-5046 1 exploit
CVE-2011-2003 4 exploits