VulnSea

windows_server_2016_server_core_installation vulnerabilities

CVEs whose affected-version data names the windows_server_2016_server_core_installation package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.

456 CVEsRSS

CVE-2026-50441High· 7.8
2mo ago

Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability

Untrusted pointer dereference in Windows Resilient File System (ReFS) allows an authorized attacker to elevate privileges locally.

TwilightMicrosoft · Windows 10 Version 1607EPSS 0.33%via CVEORG
CVE-2026-50439High· 8.1
2mo ago

Microsoft Message Queuing Queue Manager Remote Code Execution Vulnerability

Use after free in Microsoft Message Queuing Queue Manager allows an unauthorized attacker to execute code over a network.

TwilightMicrosoft · Windows 10 Version 1607EPSS 0.79%via CVEORG
CVE-2026-50435High· 7.8
2mo ago

Windows Overlay Filter Elevation of Privilege Vulnerability

Buffer over-read in Windows Overlay Filter allows an authorized attacker to elevate privileges locally.

TwilightMicrosoft · Windows 10 Version 1607EPSS 0.33%via CVEORG
CVE-2026-50432Medium· 5.3
2mo ago

Window Virtual Filtering Platform (VFP) Denial of Service Vulnerability

Use after free in Windows Virtual Filtering Platform (VFP) allows an authorized attacker to deny service over a network.

SunlitMicrosoft · Windows 10 Version 1607EPSS 0.95%via CVEORG
CVE-2026-50426Medium· 6.8
2mo ago

Windows DNS Server Remote Code Execution Vulnerability

Relative path traversal in DNS Server allows an authorized attacker to execute code over an adjacent network.

SunlitMicrosoft · Windows 10 Version 1607EPSS 0.56%via CVEORG
CVE-2026-50417High· 7.8
2mo ago

Windows NTFS Remote Code Execution Vulnerability

Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.

TwilightMicrosoft · Windows 10 Version 1607EPSS 0.33%via CVEORG
CVE-2026-50409Medium· 5.5
2mo ago

Windows Overlay Filter Information Disclosure Vulnerability

Exposure of sensitive information to an unauthorized actor in Windows Overlay Filter allows an authorized attacker to disclose information locally.

SunlitMicrosoft · Windows 10 Version 1607EPSS 0.48%via CVEORG
CVE-2026-50402High· 7.8PoC
2mo ago

NTFS Elevation of Privilege Vulnerability

Incorrect conversion between numeric types in Windows NTFS allows an authorized attacker to elevate privileges locally.

MidnightMicrosoft · Windows 10 Version 1607EPSS 0.33%via CVEORG
CVE-2026-50389Medium· 5.5
2mo ago

Windows File Explorer Information Disclosure Vulnerability

Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.

SunlitMicrosoft · Windows 10 Version 1607EPSS 0.48%via CVEORG
CVE-2026-50362High· 7.8
2mo ago

Windows Resilient File System (ReFS) Remote Code Execution Vulnerability

Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an unauthorized attacker to execute code locally.

TwilightMicrosoft · Windows 10 Version 1607EPSS 0.47%via CVEORG
CVE-2026-50480High· 7.8
2mo ago

Windows Web Proxy Auto-Discovery Protocol (WPAD) Elevation of Privilege Vulnerability

Heap-based buffer overflow in Windows Web Proxy Auto-Discovery Protocol (WPAD) allows an authorized attacker to elevate privileges locally.

TwilightMicrosoft · Windows 10 Version 1607EPSS 0.33%via CVEORG
CVE-2026-50476High· 7.8
2mo ago

Windows Network Connections Service Elevation of Privilege Vulnerability

Use after free in Microsoft Windows allows an authorized attacker to elevate privileges locally.

TwilightMicrosoft · Windows 10 Version 1607EPSS 0.28%via CVEORG
CVE-2026-50475Medium· 5.5
2mo ago

Windows Kernel Information Disclosure Vulnerability

Buffer over-read in Windows Kernel allows an authorized attacker to disclose information locally.

SunlitMicrosoft · Windows 10 Version 1607EPSS 0.38%via CVEORG
CVE-2026-50474High· 8.8
2mo ago

Remote Desktop Client Remote Code Execution Vulnerability

Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

TwilightMicrosoft · Windows 10 Version 1607EPSS 0.82%via CVEORG
CVE-2026-50470High· 7.5
2mo ago

Windows Network Policy Server SNMP Information Disclosure Vulnerability

Out-of-bounds read in Windows Network Policy Server SNMP allows an unauthorized attacker to disclose information over a network.

TwilightMicrosoft · Windows 10 Version 1607EPSS 1.0%via CVEORG
CVE-2026-50461High· 7.8
2mo ago

Windows NTFS Remote Code Execution Vulnerability

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.

TwilightMicrosoft · Windows 10 Version 1607EPSS 0.47%via CVEORG
CVE-2026-50453Medium· 6.1
2mo ago

Windows USB Audio Class Driver Information Disclosure Vulnerability

Out-of-bounds read in Windows USB Audio Class driver (usbaudio.sys) allows an unauthorized attacker to disclose information with a physical attack.

SunlitMicrosoft · Windows 10 Version 1607EPSS 0.51%via CVEORG
CVE-2026-50447Critical· 9.8
2mo ago

Windows Message Queuing Service (MSMQ) Remote Code Execution Vulnerability

Heap-based buffer overflow in Windows Message Queuing allows an unauthorized attacker to execute code over a network.

MidnightMicrosoft · Windows 10 Version 1607EPSS 0.97%via CVEORG
CVE-2026-50444High· 8.8
2mo ago

Windows Server Update Service (WSUS) Elevation of Privilege Vulnerability

Missing authentication for critical function in Windows Server Update Service allows an authorized attacker to elevate privileges over a network.

TwilightMicrosoft · Windows 10 Version 1607EPSS 0.78%via CVEORG
CVE-2026-50431Medium· 5.5
2mo ago

Windows Quality of Service (QoS) Packet Scheduler Information Disclosure Vulnerability

Windows Quality of Service (QoS) Packet Scheduler Information Disclosure Vulnerability

SunlitMicrosoft · Windows 10 Version 1607EPSS 0.48%via CVEORG
CVE-2026-50429High· 8.2
2mo ago

Windows Kernel Information Disclosure Vulnerability

Out-of-bounds read in Windows Kernel allows an unauthorized attacker to disclose information over a network.

TwilightMicrosoft · Windows 10 Version 1607EPSS 1.1%via CVEORG
CVE-2026-50394Medium· 5.5
2mo ago

Windows Media Information Disclosure Vulnerability

Exposure of sensitive information to an unauthorized actor in Windows Media allows an authorized attacker to disclose information locally.

SunlitMicrosoft · Windows 10 Version 1607EPSS 0.48%via CVEORG
CVE-2026-50505High· 7.5
2mo ago

Windows Message Queuing Service (MSMQ) Remote Code Execution Vulnerability

Use after free in Windows Message Queuing allows an authorized attacker to execute code over a network.

TwilightMicrosoft · Windows 10 Version 1607EPSS 0.74%via CVEORG
CVE-2026-50502High· 8.0
2mo ago

Windows Event Logging Service Remote Code Execution Vulnerability

Insufficient granularity of access control in Windows Event Logging Service allows an authorized attacker to execute code over a network.

TwilightMicrosoft · Windows 10 Version 1607EPSS 0.65%via CVEORG
CVE-2026-50500High· 7.5
2mo ago

Windows Netlogon Elevation of Privilege Vulnerability

Use after free in Windows Netlogon allows an authorized attacker to elevate privileges over a network.

TwilightMicrosoft · Windows 10 Version 1607EPSS 0.74%via CVEORG
CVE-2026-50498High· 7.8
2mo ago

Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability

Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability

TwilightMicrosoft · Windows 10 Version 1607EPSS 0.36%via CVEORG
CVE-2026-50494High· 7.8
2mo ago

Windows NTFS Remote Code Execution Vulnerability

Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.

TwilightMicrosoft · Windows 10 Version 1607EPSS 0.33%via CVEORG
CVE-2026-50492Medium· 6.8
2mo ago

Windows Resilient File System (ReFS) Remote Code Execution Vulnerability

Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an unauthorized attacker to execute code with a physical attack.

SunlitMicrosoft · Windows 10 Version 1607EPSS 0.44%via CVEORG
CVE-2026-50491High· 7.0
2mo ago

Code Integrity DLL (ci.dll) Elevation of Privilege Vulnerability

Out-of-bounds read in Code Integrity DLL (ci.dll) allows an authorized attacker to elevate privileges locally.

TwilightMicrosoft · Windows 10 Version 1607EPSS 0.28%via CVEORG
CVE-2026-50490High· 7.0
2mo ago

Windows Installer Elevation of Privilege Vulnerability

Use after free in Windows Installer allows an authorized attacker to elevate privileges locally.

TwilightMicrosoft · Windows 10 Version 1607EPSS 0.28%via CVEORG
windows_server_2016_server_core_installation vulnerabilities (CVEs) — page 13 · VulnSea