Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1110 CNY

100%

Windows Server 2022, 23H2 Edition (Server Core installation) — Vulnerabilities & Security Advisories 18

All 18 CVE vulnerabilities found in Windows Server 2022, 23H2 Edition (Server Core installation), with AI-generated Chinese analysis, references, and POCs.

This page documents known security vulnerabilities affecting Windows Server 2022, 23H2 Edition with Server Core installation, categorized by Common Weakness Enumeration types. It aggregates data on various vulnerability classes, including privilege escalation, remote code execution, and information disclosure, covering the release period from October 2021 through the end of 2025. Users can explore this resource to track vendor security advisories from Microsoft, gain a deeper understanding of specific weakness classes and their technical implications, and review the historical vulnerability record for this specific server edition. The collection focuses exclusively on the Server Core installation option, which provides a minimal footprint without a GUI, thereby reducing the attack surface but introducing unique configuration and exposure vectors that differ from full desktop experiences. This page serves as a centralized reference for security professionals, system administrators, and auditors who need to assess the risk posture of environments running this specific configuration. By consolidating data from official bulletins and third-party monitoring, it allows for quicker identification of patches required for deployment and helps in maintaining compliance with organizational security policies. The information is structured to facilitate efficient filtering by severity, component, and update status, ensuring that relevant details are easily accessible for incident response and remediation planning.

Vendor: Microsoft

CVE IDTitleCVSSSeverityPublished
CVE-2025-55697 Azure Local Elevation of Privilege Vulnerability CWE-122 7.8 High2025-10-14
CVE-2025-47979 Microsoft Failover Cluster Information Disclosure Vulnerability CWE-532 5.5 Medium2025-10-14
CVE-2025-21326 Internet Explorer Remote Code Execution Vulnerability CWE-843 7.8 High2025-01-14
CVE-2024-38129 Windows Kerberos Elevation of Privilege Vulnerability CWE-285 7.5 High2024-10-08
CVE-2024-38029 Microsoft OpenSSH for Windows Remote Code Execution Vulnerability CWE-73 7.5 High2024-10-08
CVE-2024-30007 Microsoft Brokering File System Elevation of Privilege Vulnerability CWE-269 8.8 High2024-05-14
CVE-2024-28904 Microsoft Brokering File System Elevation of Privilege Vulnerability CWE-269 7.8 High2024-04-09
CVE-2024-28907 Microsoft Brokering File System Elevation of Privilege Vulnerability CWE-59 7.8 High2024-04-09
CVE-2024-26213 Microsoft Brokering File System Elevation of Privilege Vulnerability CWE-822 7.0 High2024-04-09
CVE-2024-26236 Windows Update Stack Elevation of Privilege Vulnerability CWE-591 7.0 High2024-04-09
CVE-2024-26235 Windows Update Stack Elevation of Privilege Vulnerability CWE-306 7.8 High2024-04-09
CVE-2024-28905 Microsoft Brokering File System Elevation of Privilege Vulnerability CWE-269 7.8 High2024-04-09
CVE-2024-21353 Microsoft WDAC ODBC Driver Remote Code Execution Vulnerability CWE-122 8.8 High2024-02-13
CVE-2024-21345 Windows Kernel Elevation of Privilege Vulnerability CWE-122 8.8 High2024-02-13
CVE-2024-20686 Win32k Elevation of Privilege Vulnerability CWE-591 7.8 High2024-01-09
CVE-2024-20653 Microsoft Common Log File System Elevation of Privilege Vulnerability CWE-125 7.8 High2024-01-09
CVE-2023-36399 Windows Storage Elevation of Privilege Vulnerability CWE-59 7.1 High2023-11-14
CVE-2022-30170 Windows Credential Roaming Service Elevation of Privilege Vulnerability 7.3 High2022-09-13

All 18 known CVE vulnerabilities affecting Windows Server 2022, 23H2 Edition (Server Core installation) with full Chinese analysis, references, and POCs where available.