Unrated severityNVD Advisory· Published Dec 12, 2012· Updated Apr 29, 2026
CVE-2012-2549
CVE-2012-2549
Description
The IP-HTTPS server in Windows Server 2008 R2 and R2 SP1 and Server 2012 does not properly validate certificates, which allows remote attackers to bypass intended access restrictions via a revoked certificate, aka "Revoked Certificate Bypass Vulnerability."
Affected products
3cpe:2.3:o:microsoft:windows_server_2008:*:r2:itanium:*:*:*:*:*+ 1 more
- cpe:2.3:o:microsoft:windows_server_2008:*:r2:itanium:*:*:*:*:*
- cpe:2.3:o:microsoft:windows_server_2008:*:r2:x64:*:*:*:*:*
- cpe:2.3:o:microsoft:windows_server_2012:-:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3News mentions
0No linked articles in our index yet.