{"schema_version":1,"title":"Microsoft Windows Server 2008 R2 vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 20 vulnerabilities in Microsoft Windows Server 2008 R2: 0 in the last 7 days and 0 in the last 90 days, 0 of them critical and 0 exploited in the wild. The most recent, CVE-2026-20936, was published on 13 January 2026.","url":"https://junglewise.ai/threats/technologies/windows-server-2008-r2","json_url":"https://junglewise.ai/threats/technologies/windows-server-2008-r2.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/windows-server-2008-r2","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":11,"all_time":20,"critical":0,"exploited":0,"last_7_days":0,"last_30_days":0,"last_90_days":0,"last_365_days":20},"latest":[{"cve":"CVE-2026-20936","cvss":4.3,"epss":0.0044,"slug":"cve-2026-20936-microsoft-windows-ndis-out-of-bounds-read","title":"Microsoft Windows NDIS out-of-bounds read","severity":"medium","exploited":false,"published_at":"2026-01-13T18:16:20.653+00:00","url":"https://junglewise.ai/threats/cve-2026-20936-microsoft-windows-ndis-out-of-bounds-read"},{"cve":"CVE-2026-20927","cvss":5.3,"epss":0.0089,"slug":"cve-2026-20927-microsoft-windows-smb-server-race-condition-denial-of-service","title":"Microsoft Windows SMB Server race condition denial of service","severity":"medium","exploited":false,"published_at":"2026-01-13T18:16:19.65+00:00","url":"https://junglewise.ai/threats/cve-2026-20927-microsoft-windows-smb-server-race-condition-denial-of-service"},{"cve":"CVE-2026-20925","cvss":6.5,"epss":0.1731,"slug":"cve-2026-20925-microsoft-windows-ntlm-spoofing-via-external-path-control","title":"Microsoft Windows NTLM spoofing via external path control","severity":"medium","exploited":false,"published_at":"2026-01-13T18:16:19.2+00:00","url":"https://junglewise.ai/threats/cve-2026-20925-microsoft-windows-ntlm-spoofing-via-external-path-control"},{"cve":"CVE-2026-20922","cvss":7.8,"epss":0.0104,"slug":"cve-2026-20922-microsoft-windows-ntfs-heap-overflow","title":"Microsoft Windows NTFS heap overflow","severity":"high","exploited":false,"published_at":"2026-01-13T18:16:18.633+00:00","url":"https://junglewise.ai/threats/cve-2026-20922-microsoft-windows-ntfs-heap-overflow"},{"cve":"CVE-2026-20875","cvss":7.5,"epss":0.0153,"slug":"cve-2026-20875-microsoft-windows-lsass-null-pointer-dereference-denial-of","title":"Microsoft Windows LSASS null pointer dereference denial of service","severity":"high","exploited":false,"published_at":"2026-01-13T18:16:17.483+00:00","url":"https://junglewise.ai/threats/cve-2026-20875-microsoft-windows-lsass-null-pointer-dereference-denial-of"},{"cve":"CVE-2026-20872","cvss":6.5,"epss":0.1911,"slug":"cve-2026-20872-microsoft-windows-ntlm-spoofing-via-external-file-path-control","title":"Microsoft Windows NTLM spoofing via external file path control","severity":"medium","exploited":false,"published_at":"2026-01-13T18:16:16.973+00:00","url":"https://junglewise.ai/threats/cve-2026-20872-microsoft-windows-ntlm-spoofing-via-external-file-path-control"},{"cve":"CVE-2026-20869","cvss":7,"epss":0.0029,"slug":"cve-2026-20869-microsoft-windows-race-condition-in-local-session-manager","title":"Microsoft Windows race condition in Local Session Manager","severity":"high","exploited":false,"published_at":"2026-01-13T18:16:16.48+00:00","url":"https://junglewise.ai/threats/cve-2026-20869-microsoft-windows-race-condition-in-local-session-manager"},{"cve":"CVE-2026-20868","cvss":8.8,"epss":0.0134,"slug":"cve-2026-20868-microsoft-windows-rras-heap-buffer-overflow","title":"Microsoft Windows RRAS heap buffer overflow","severity":"high","exploited":false,"published_at":"2026-01-13T18:16:16.303+00:00","url":"https://junglewise.ai/threats/cve-2026-20868-microsoft-windows-rras-heap-buffer-overflow"},{"cve":"CVE-2026-20860","cvss":7.8,"epss":0.0798,"slug":"cve-2026-20860-microsoft-windows-ancillary-function-driver-type-confusion","title":"Microsoft Windows Ancillary Function Driver type confusion privilege escalation","severity":"high","exploited":false,"published_at":"2026-01-13T18:16:14.97+00:00","url":"https://junglewise.ai/threats/cve-2026-20860-microsoft-windows-ancillary-function-driver-type-confusion"},{"cve":"CVE-2026-20849","cvss":7.5,"epss":0.0097,"slug":"cve-2026-20849-microsoft-windows-kerberos-privilege-escalation-via-untrusted","title":"Microsoft Windows Kerberos privilege escalation via untrusted input","severity":"high","exploited":false,"published_at":"2026-01-13T18:16:13.48+00:00","url":"https://junglewise.ai/threats/cve-2026-20849-microsoft-windows-kerberos-privilege-escalation-via-untrusted"},{"cve":"CVE-2026-20847","cvss":6.5,"epss":0.013,"slug":"cve-2026-20847-microsoft-windows-shell-information-disclosure-and-spoofing","title":"Microsoft Windows Shell information disclosure and spoofing","severity":"medium","exploited":false,"published_at":"2026-01-13T18:16:13.14+00:00","url":"https://junglewise.ai/threats/cve-2026-20847-microsoft-windows-shell-information-disclosure-and-spoofing"},{"cve":"CVE-2026-20843","cvss":7.8,"epss":0.0332,"slug":"cve-2026-20843-microsoft-windows-rras-privilege-escalation-via-improper-access","title":"Microsoft Windows RRAS privilege escalation via improper access control","severity":"high","exploited":false,"published_at":"2026-01-13T18:16:12.81+00:00","url":"https://junglewise.ai/threats/cve-2026-20843-microsoft-windows-rras-privilege-escalation-via-improper-access"},{"cve":"CVE-2026-20840","cvss":7.8,"epss":0.0442,"slug":"cve-2026-20840-microsoft-windows-ntfs-heap-overflow-local-code-execution","title":"Microsoft Windows NTFS heap overflow local code execution","severity":"high","exploited":false,"published_at":"2026-01-13T18:16:12.49+00:00","url":"https://junglewise.ai/threats/cve-2026-20840-microsoft-windows-ntfs-heap-overflow-local-code-execution"},{"cve":"CVE-2026-20839","cvss":5.5,"epss":0.0046,"slug":"cve-2026-20839-microsoft-windows-client-side-caching-service-improper-access","title":"Microsoft Windows Client-Side Caching Service improper access control","severity":"medium","exploited":false,"published_at":"2026-01-13T18:16:12.32+00:00","url":"https://junglewise.ai/threats/cve-2026-20839-microsoft-windows-client-side-caching-service-improper-access"},{"cve":"CVE-2026-20834","cvss":4.6,"epss":0.0071,"slug":"cve-2026-20834-microsoft-windows-shell-absolute-path-traversal","title":"Microsoft Windows Shell absolute path traversal","severity":"medium","exploited":false,"published_at":"2026-01-13T18:16:11.493+00:00","url":"https://junglewise.ai/threats/cve-2026-20834-microsoft-windows-shell-absolute-path-traversal"},{"cve":"CVE-2026-20831","cvss":7.8,"epss":0.003,"slug":"cve-2026-20831-microsoft-windows-ancillary-function-driver-privilege-escalation","title":"Microsoft Windows Ancillary Function Driver privilege escalation","severity":"high","exploited":false,"published_at":"2026-01-13T18:16:10.977+00:00","url":"https://junglewise.ai/threats/cve-2026-20831-microsoft-windows-ancillary-function-driver-privilege-escalation"},{"cve":"CVE-2026-20828","cvss":4.6,"epss":0.0062,"slug":"cve-2026-20828-microsoft-windows-internet-connection-sharing-out-of-bounds-read","title":"Microsoft Windows Internet Connection Sharing out-of-bounds read","severity":"medium","exploited":false,"published_at":"2026-01-13T18:16:10.48+00:00","url":"https://junglewise.ai/threats/cve-2026-20828-microsoft-windows-internet-connection-sharing-out-of-bounds-read"},{"cve":"CVE-2026-20821","cvss":6.2,"epss":0.0069,"slug":"cve-2026-20821-microsoft-windows-rpc-information-disclosure","title":"Microsoft Windows RPC information disclosure","severity":"medium","exploited":false,"published_at":"2026-01-13T18:16:09.313+00:00","url":"https://junglewise.ai/threats/cve-2026-20821-microsoft-windows-rpc-information-disclosure"},{"cve":"CVE-2026-20820","cvss":7.8,"epss":0.0252,"slug":"cve-2026-20820-microsoft-windows-clfs-driver-heap-overflow-privilege-escalation","title":"Microsoft Windows CLFS Driver heap overflow privilege escalation","severity":"high","exploited":false,"published_at":"2026-01-13T18:16:09.143+00:00","url":"https://junglewise.ai/threats/cve-2026-20820-microsoft-windows-clfs-driver-heap-overflow-privilege-escalation"},{"cve":"CVE-2026-20816","cvss":7.8,"epss":0.0239,"slug":"cve-2026-20816-microsoft-windows-installer-privilege-escalation-via-toctou-race","title":"Microsoft Windows Installer privilege escalation via TOCTOU race condition","severity":"high","exploited":false,"published_at":"2026-01-13T18:16:08.437+00:00","url":"https://junglewise.ai/threats/cve-2026-20816-microsoft-windows-installer-privilege-escalation-via-toctou-race"}],"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0}],"related":[{"name":"Microsoft Windows","slug":"windows-","vulnerabilities":977,"url":"https://junglewise.ai/threats/technologies/windows-"},{"name":"Microsoft Windows 10","slug":"windows-10","vulnerabilities":588,"url":"https://junglewise.ai/threats/technologies/windows-10"},{"name":"Microsoft Windows 11","slug":"windows-11","vulnerabilities":493,"url":"https://junglewise.ai/threats/technologies/windows-11"},{"name":"Microsoft Windows Server 2012","slug":"windows-server-2012","vulnerabilities":293,"url":"https://junglewise.ai/threats/technologies/windows-server-2012"},{"name":"Microsoft Windows Server 2016","slug":"windows-server-2016","vulnerabilities":213,"url":"https://junglewise.ai/threats/technologies/windows-server-2016"},{"name":"Microsoft Windows Server 2019","slug":"windows-server-2019","vulnerabilities":211,"url":"https://junglewise.ai/threats/technologies/windows-server-2019"},{"name":"Microsoft Windows 11 24h2","slug":"windows-11-24h2","vulnerabilities":192,"url":"https://junglewise.ai/threats/technologies/windows-11-24h2"},{"name":"Microsoft Windows Server 2022","slug":"windows-server-2022","vulnerabilities":178,"url":"https://junglewise.ai/threats/technologies/windows-server-2022"},{"name":"Microsoft Edge","slug":"edge-chromium-based","vulnerabilities":168,"url":"https://junglewise.ai/threats/technologies/edge-chromium-based"},{"name":"Microsoft Windows 11 25h2","slug":"windows-11-25h2","vulnerabilities":161,"url":"https://junglewise.ai/threats/technologies/windows-11-25h2"},{"name":"Microsoft Windows 11 Version 26H1","slug":"windows-11-version-26h1","vulnerabilities":135,"url":"https://junglewise.ai/threats/technologies/windows-11-version-26h1"},{"name":"Microsoft Windows Server 2025","slug":"windows-server-2025","vulnerabilities":124,"url":"https://junglewise.ai/threats/technologies/windows-server-2025"}],"technology":{"hub":true,"name":"Microsoft Windows Server 2008 R2","slug":"windows-server-2008-r2","vendor":{"name":"Microsoft","slug":"microsoft","url":"https://junglewise.ai/threats/vendors/microsoft"},"aliases":[],"category":"operating-system","homepage":"https://www.microsoft.com/windowsserver","description":"A server operating system produced by Microsoft as part of the Windows NT family, based on the Windows 7 codebase.","url":"https://junglewise.ai/threats/technologies/windows-server-2008-r2"},"most_severe":[{"cve":"CVE-2026-20868","cvss":8.8,"epss":0.0134,"slug":"cve-2026-20868-microsoft-windows-rras-heap-buffer-overflow","title":"Microsoft Windows RRAS heap buffer overflow","severity":"high","exploited":false,"published_at":"2026-01-13T18:16:16.303+00:00","url":"https://junglewise.ai/threats/cve-2026-20868-microsoft-windows-rras-heap-buffer-overflow"},{"cve":"CVE-2026-20860","cvss":7.8,"epss":0.0798,"slug":"cve-2026-20860-microsoft-windows-ancillary-function-driver-type-confusion","title":"Microsoft Windows Ancillary Function Driver type confusion privilege escalation","severity":"high","exploited":false,"published_at":"2026-01-13T18:16:14.97+00:00","url":"https://junglewise.ai/threats/cve-2026-20860-microsoft-windows-ancillary-function-driver-type-confusion"},{"cve":"CVE-2026-20840","cvss":7.8,"epss":0.0442,"slug":"cve-2026-20840-microsoft-windows-ntfs-heap-overflow-local-code-execution","title":"Microsoft Windows NTFS heap overflow local code execution","severity":"high","exploited":false,"published_at":"2026-01-13T18:16:12.49+00:00","url":"https://junglewise.ai/threats/cve-2026-20840-microsoft-windows-ntfs-heap-overflow-local-code-execution"},{"cve":"CVE-2026-20843","cvss":7.8,"epss":0.0332,"slug":"cve-2026-20843-microsoft-windows-rras-privilege-escalation-via-improper-access","title":"Microsoft Windows RRAS privilege escalation via improper access control","severity":"high","exploited":false,"published_at":"2026-01-13T18:16:12.81+00:00","url":"https://junglewise.ai/threats/cve-2026-20843-microsoft-windows-rras-privilege-escalation-via-improper-access"},{"cve":"CVE-2026-20820","cvss":7.8,"epss":0.0252,"slug":"cve-2026-20820-microsoft-windows-clfs-driver-heap-overflow-privilege-escalation","title":"Microsoft Windows CLFS Driver heap overflow privilege escalation","severity":"high","exploited":false,"published_at":"2026-01-13T18:16:09.143+00:00","url":"https://junglewise.ai/threats/cve-2026-20820-microsoft-windows-clfs-driver-heap-overflow-privilege-escalation"},{"cve":"CVE-2026-20816","cvss":7.8,"epss":0.0239,"slug":"cve-2026-20816-microsoft-windows-installer-privilege-escalation-via-toctou-race","title":"Microsoft Windows Installer privilege escalation via TOCTOU race condition","severity":"high","exploited":false,"published_at":"2026-01-13T18:16:08.437+00:00","url":"https://junglewise.ai/threats/cve-2026-20816-microsoft-windows-installer-privilege-escalation-via-toctou-race"},{"cve":"CVE-2026-20922","cvss":7.8,"epss":0.0104,"slug":"cve-2026-20922-microsoft-windows-ntfs-heap-overflow","title":"Microsoft Windows NTFS heap overflow","severity":"high","exploited":false,"published_at":"2026-01-13T18:16:18.633+00:00","url":"https://junglewise.ai/threats/cve-2026-20922-microsoft-windows-ntfs-heap-overflow"},{"cve":"CVE-2026-20831","cvss":7.8,"epss":0.003,"slug":"cve-2026-20831-microsoft-windows-ancillary-function-driver-privilege-escalation","title":"Microsoft Windows Ancillary Function Driver privilege escalation","severity":"high","exploited":false,"published_at":"2026-01-13T18:16:10.977+00:00","url":"https://junglewise.ai/threats/cve-2026-20831-microsoft-windows-ancillary-function-driver-privilege-escalation"},{"cve":"CVE-2026-20875","cvss":7.5,"epss":0.0153,"slug":"cve-2026-20875-microsoft-windows-lsass-null-pointer-dereference-denial-of","title":"Microsoft Windows LSASS null pointer dereference denial of service","severity":"high","exploited":false,"published_at":"2026-01-13T18:16:17.483+00:00","url":"https://junglewise.ai/threats/cve-2026-20875-microsoft-windows-lsass-null-pointer-dereference-denial-of"},{"cve":"CVE-2026-20849","cvss":7.5,"epss":0.0097,"slug":"cve-2026-20849-microsoft-windows-kerberos-privilege-escalation-via-untrusted","title":"Microsoft Windows Kerberos privilege escalation via untrusted input","severity":"high","exploited":false,"published_at":"2026-01-13T18:16:13.48+00:00","url":"https://junglewise.ai/threats/cve-2026-20849-microsoft-windows-kerberos-privilege-escalation-via-untrusted"}],"generated_at":"2026-09-27T03:07:00.185062+00:00"}