this is pretty nonsense for a small or home server. it isn't that hard to make something essentially completely bulletproof over a small surface area
the issues mainly come from sprawling enterprise infrastructure, running thousands of random endpoints across software nobody cared to write carefully
The only way to make something bulletproof is to get rid of it's network cards, or take so much out of it, it's nearly useless.
The recent Windows and Linux kernel exploits should at least give you some idea on how good these models are at exploiting stuff.