Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Windows Server 2008 R2 Service Pack 1 — Vulnerabilities & Security Advisories 71

All 71 CVE vulnerabilities found in Windows Server 2008 R2 Service Pack 1, with AI-generated Chinese analysis, references, and POCs.

This page documents known security vulnerabilities affecting the Microsoft Windows Server 2008 R2 Service Pack 1 operating system, categorized by their respective weakness types and security tags. It serves as a comprehensive repository for understanding the specific risk profiles associated with this legacy server environment. The content collected here encompasses a wide variety of vulnerability classifications, including remote code execution flaws, privilege escalation errors, information disclosure issues, and denial of service conditions. The time range covered spans from the initial release of the service pack through its end-of-support period, capturing both historical exploits and subsequently patched weaknesses during the product's active lifecycle. By reviewing this aggregation, readers can effectively track Microsoft’s security advisories as they were issued for this specific version, gaining insight into how different weakness classes manifested within the Windows Server 2008 R2 codebase. Furthermore, users can analyze the chronological history of vulnerabilities unique to this product release, allowing for a deeper understanding of its overall security posture and the evolution of threats it faced. This resource is intended for security analysts, system administrators, and compliance officers who need to assess the residual risk of maintaining or auditing systems running this operating system. The information provided aids in contextualizing patch management priorities and understanding the technical details behind specific CVE events without relying on external databases for raw data lookup.

Vendor: Microsoft

CVE IDTitleCVSSSeverityPublished
CVE-2026-20833 Windows Kerberos Information Disclosure Vulnerability CWE-327 5.5 Medium2026-01-13
CVE-2026-0386 Windows Deployment Services Remote Code Execution Vulnerability CWE-284 7.5 High2026-01-13
CVE-2025-54113 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability CWE-122 8.8 High2025-09-09
CVE-2025-53806 Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability CWE-126 6.5 Medium2025-09-09
CVE-2025-53796 Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability CWE-126 6.5 Medium2025-09-09
CVE-2025-55225 Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability CWE-125 6.5 Medium2025-09-09
CVE-2025-54097 Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability CWE-125 6.5 Medium2025-09-09
CVE-2025-54096 Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability CWE-125 6.5 Medium2025-09-09
CVE-2025-54095 Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability CWE-125 6.5 Medium2025-09-09
CVE-2025-53797 Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability CWE-126 6.5 Medium2025-09-09
CVE-2025-53798 Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability CWE-126 6.5 Medium2025-09-09
CVE-2025-50157 Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability CWE-908 5.7 Medium2025-08-12
CVE-2025-53720 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability CWE-122 8.0 High2025-08-12
CVE-2025-53719 Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability CWE-908 5.7 Medium2025-08-12
CVE-2025-53153 Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability CWE-908 5.7 Medium2025-08-12
CVE-2025-53148 Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability CWE-908 5.7 Medium2025-08-12
CVE-2025-53138 Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability CWE-908 5.7 Medium2025-08-12
CVE-2025-50164 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability CWE-122 8.0 High2025-08-12
CVE-2025-50163 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability CWE-122 8.8 High2025-08-12
CVE-2025-50162 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability CWE-122 8.0 High2025-08-12
CVE-2025-50160 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability CWE-122 8.0 High2025-08-12
CVE-2025-50156 Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability CWE-908 5.7 Medium2025-08-12
CVE-2025-49757 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability CWE-122 8.8 High2025-08-12
CVE-2025-49729 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability CWE-122 8.8 High2025-07-08
CVE-2025-49681 Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability CWE-125 6.5 Medium2025-07-08
CVE-2025-49673 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability CWE-122 8.8 High2025-07-08
CVE-2025-49669 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability CWE-122 8.8 High2025-07-08
CVE-2025-49668 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability CWE-122 8.8 High2025-07-08
CVE-2025-49663 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability CWE-122 8.8 High2025-07-08
CVE-2025-47998 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability CWE-122 8.8 High2025-07-08

All 71 known CVE vulnerabilities affecting Windows Server 2008 R2 Service Pack 1 with full Chinese analysis, references, and POCs where available.