Windows Server 2008

by Microsoft

Take action — actively targeted

Windows Server 2008 is actively targeted by attackers. A significant proportion of its known vulnerabilities are being exploited.

What to do
  1. Apply all available updates immediately
  2. Review your exposure — is this internet-facing?
  3. Monitor vendor advisories for this product

What Attackers Target

Vulnerabilities with high exploit probability 28.1%
Confirmed actively exploited (CISA) 4.9%
Public exploit code available 6.7%
Based on 3003 known vulnerabilities. Percentages show the proportion that are actively dangerous — a low percentage means most vulnerabilities in this product are not being exploited.

Most Dangerous Vulnerabilities

CVE CVSS Exploit Probability Confirmed
CVE-2019-0708 9.8 94.5% Yes
CVE-2020-1472 5.5 94.4% Yes
CVE-2021-40444 8.8 94.3% Yes
CVE-2021-1675 7.8 94.3% Yes
CVE-2015-1635 9.8 94.3% Yes
CVE-2017-0199 7.8 94.3% Yes
CVE-2018-8174 7.5 94.3% Yes
CVE-2021-34527 8.8 94.2% Yes
CVE-2018-8120 7.0 94.1% Yes
CVE-2014-6332 8.8 94.1% Yes
CVE-2021-42278 7.5 94.1% Yes
CVE-2021-42287 7.5 94.0% Yes
CVE-2017-8464 8.8 93.9% Yes
CVE-2020-1350 10.0 93.8% Yes
CVE-2021-36942 7.5 93.7% Yes
CVE-2022-30190 7.8 93.6% Yes
CVE-2023-36884 7.5 93.2% Yes
CVE-2017-0213 7.3 92.7% Yes
CVE-2024-38112 7.5 92.6% Yes
CVE-2013-3906 7.8 92.6% Yes
65
/ 100
high-risk
Active Threat 50/50 · Critical
Exploit Availability 15/50 · Low

Score uses Wilson score intervals to account for sample size. Products with few CVEs are scored conservatively.