Known vulnerabilities in Windows Server 2008 SP2 - page 9

Vendor: Microsoft
Version: 2008 SP2
Software CPE: cpe:2.3:o:microsoft:windows_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 419
Public exploits: 12
Known exploited (KEV): 20
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Windows Server version 2008 SP2 Windows Server 2008 SP2 is affected by 419 vulnerabilities: 7 critical, 130 high, 80 medium, 202 low Critical High Medium Low

Vulnerabilities (419)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU102619 - Heap-based Buffer Overflow
CVE-2025-21250
CWE-122 High
No
No
2008 R2 6.1.7601.27520, 2008 6.0.6003.23070, 2012 R2 6.3.9600.22371, 2012 6.2.9200.25273, 2016 10.0.14393.7785, 2022 23H2 10.0.25398.1369, 2022 10.0.20348.3091, 2025 10.0.26100.2894 14.01.2025 SB2025011445
#VU102618 - Heap-based Buffer Overflow
CVE-2025-21302
CWE-122 High
No
No
2008 R2 6.1.7601.27520, 2008 6.0.6003.23070, 2012 R2 6.3.9600.22371, 2012 6.2.9200.25273, 2016 10.0.14393.7785, 2022 23H2 10.0.25398.1369, 2022 10.0.20348.3091, 2025 10.0.26100.2894 14.01.2025 SB2025011445
#VU102614 - Heap-based Buffer Overflow
CVE-2025-21237
CWE-122 High
No
No
2008 R2 6.1.7601.27520, 2008 6.0.6003.23070, 2012 R2 6.3.9600.22371, 2012 6.2.9200.25273, 2016 10.0.14393.7785, 2022 23H2 10.0.25398.1369, 2022 10.0.20348.3091, 2025 10.0.26100.2894 14.01.2025 SB2025011445
#VU102613 - Heap-based Buffer Overflow
CVE-2025-21273
CWE-122 High
No
No
2008 R2 6.1.7601.27520, 2008 6.0.6003.23070, 2012 R2 6.3.9600.22371, 2012 6.2.9200.25273, 2016 10.0.14393.7785, 2022 23H2 10.0.25398.1369, 2022 10.0.20348.3091, 2025 10.0.26100.2894 14.01.2025 SB2025011445
#VU102612 - Heap-based Buffer Overflow
CVE-2025-21252
CWE-122 High
No
No
2008 R2 6.1.7601.27520, 2008 6.0.6003.23070, 2012 R2 6.3.9600.22371, 2012 6.2.9200.25273, 2016 10.0.14393.7785, 2022 23H2 10.0.25398.1369, 2022 10.0.20348.3091, 2025 10.0.26100.2894 14.01.2025 SB2025011445
#VU102611 - Heap-based Buffer Overflow
CVE-2025-21417
CWE-122 High
No
No
2008 R2 6.1.7601.27520, 2008 6.0.6003.23070, 2012 R2 6.3.9600.22371, 2012 6.2.9200.25273, 2016 10.0.14393.7785, 2022 23H2 10.0.25398.1369, 2022 10.0.20348.3091, 2025 10.0.26100.2894 14.01.2025 SB2025011445
#VU102610 - Heap-based Buffer Overflow
CVE-2025-21303
CWE-122 High
No
No
2008 R2 6.1.7601.27520, 2008 6.0.6003.23070, 2012 R2 6.3.9600.22371, 2012 6.2.9200.25273, 2016 10.0.14393.7785, 2022 23H2 10.0.25398.1369, 2022 10.0.20348.3091, 2025 10.0.26100.2894 14.01.2025 SB2025011445
#VU102609 - Integer overflow
CVE-2025-21243
CWE-190 High
No
No
2008 R2 6.1.7601.27520, 2008 6.0.6003.23070, 2012 R2 6.3.9600.22371, 2012 6.2.9200.25273, 2016 10.0.14393.7785, 2022 23H2 10.0.25398.1369, 2022 10.0.20348.3091, 2025 10.0.26100.2894 14.01.2025 SB2025011445
#VU102608 - Heap-based Buffer Overflow
CVE-2025-21306
CWE-122 High
No
No
2008 R2 6.1.7601.27520, 2008 6.0.6003.23070, 2012 R2 6.3.9600.22371, 2012 6.2.9200.25273, 2016 10.0.14393.7785, 2022 23H2 10.0.25398.1369, 2022 10.0.20348.3091, 2025 10.0.26100.2894 14.01.2025 SB2025011445
#VU102607 - Heap-based Buffer Overflow
CVE-2025-21339
CWE-122 High
No
No
2008 R2 6.1.7601.27520, 2008 6.0.6003.23070, 2012 R2 6.3.9600.22371, 2012 6.2.9200.25273, 2016 10.0.14393.7785, 2022 23H2 10.0.25398.1369, 2022 10.0.20348.3091, 2025 10.0.26100.2894 14.01.2025 SB2025011445
#VU102605 - Heap-based Buffer Overflow
CVE-2025-21409
CWE-122 High
No
No
2008 R2 6.1.7601.27520, 2008 6.0.6003.23070, 2012 R2 6.3.9600.22371, 2012 6.2.9200.25273, 2016 10.0.14393.7785, 2022 23H2 10.0.25398.1369, 2022 10.0.20348.3091, 2025 10.0.26100.2894 14.01.2025 SB2025011445
#VU102604 - Heap-based Buffer Overflow
CVE-2025-21413
CWE-122 High
No
No
2008 R2 6.1.7601.27520, 2008 6.0.6003.23070, 2012 R2 6.3.9600.22371, 2012 6.2.9200.25273, 2016 10.0.14393.7785, 2022 23H2 10.0.25398.1369, 2022 10.0.20348.3091, 2025 10.0.26100.2894 14.01.2025 SB2025011445
#VU86411 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2024-21405
CWE-362 Low
No
No
- 13.02.2024 SB2024021343
#VU85242 - Security Features
CVE-2024-20652
CWE-254 Medium
No
No
- 09.01.2024 SB2024010999
#VU79263 - Exposure of sensitive information to an unauthorized actor
CVE-2023-20569
CWE-200 Low
No
No
- 08.08.2023 SB20230808145
SB20230808146
SB2023080902
and 86 more
#VU79239 - Divide By Zero
CVE-2023-20588
CWE-369 Low
No
No
- 08.08.2023 SB20230808103
SB2023082053
SB2023091104
and 64 more
#VU72209 - Improper input validation
CVE-2023-21803
CWE-20 High
No
No
- 14.02.2023 SB2023021440
#VU69070 - Memory corruption
CVE-2022-41128
CWE-119 Critical
No
Exploited
- 08.11.2022 SB2022110809
#VU69065 - Memory corruption
CVE-2022-41073
CWE-119 High
No
Exploited
- 08.11.2022 SB2022110805
#VU68240 - Security Features
CVE-2022-38032
CWE-254 Low
No
No
- 12.10.2022 SB2022101232


Showing elements 161 - 180 out of 419