Windows Server 2012
by Microsoft
CVEs (4,890)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-21320 | Med | 0.47 | 6.5 | 0.23 | Jan 9, 2024 | Windows Themes Spoofing Vulnerability | ||
| CVE-2023-36401 | Hig | 0.47 | 7.2 | 0.02 | Nov 14, 2023 | Microsoft Remote Registry Service Remote Code Execution Vulnerability | ||
| CVE-2023-36584 | Med | 0.47 | 5.4 | 0.03 | KEV | Oct 10, 2023 | Windows Mark of the Web Security Feature Bypass Vulnerability | |
| CVE-2023-35350 | Hig | 0.47 | 7.2 | 0.01 | Jul 11, 2023 | Windows Active Directory Certificate Services (AD CS) Remote Code Execution Vulnerability | ||
| CVE-2023-28254 | Hig | 0.47 | 7.2 | 0.01 | Apr 11, 2023 | Windows DNS Server Remote Code Execution Vulnerability | ||
| CVE-2023-23400 | Hig | 0.47 | 7.2 | 0.01 | Mar 14, 2023 | Windows DNS Server Remote Code Execution Vulnerability | ||
| CVE-2022-26815 | Hig | 0.47 | 7.2 | 0.04 | Apr 15, 2022 | Windows DNS Server Remote Code Execution Vulnerability | ||
| CVE-2022-26813 | Hig | 0.47 | 7.2 | 0.04 | Apr 15, 2022 | Windows DNS Server Remote Code Execution Vulnerability | ||
| CVE-2022-26812 | Hig | 0.47 | 7.2 | 0.04 | Apr 15, 2022 | Windows DNS Server Remote Code Execution Vulnerability | ||
| CVE-2022-24536 | Hig | 0.47 | 7.2 | 0.04 | Apr 15, 2022 | Windows DNS Server Remote Code Execution Vulnerability | ||
| CVE-2022-23284 | Hig | 0.47 | 7.2 | 0.03 | Mar 9, 2022 | Windows Print Spooler Elevation of Privilege Vulnerability | ||
| CVE-2022-23253 | Med | 0.47 | 6.5 | 0.56 | Mar 9, 2022 | Windows Point-to-Point Tunneling Protocol Denial of Service Vulnerability | ||
| CVE-2021-40469 | Hig | 0.47 | 7.2 | 0.08 | Oct 13, 2021 | Windows DNS Server Remote Code Execution Vulnerability | ||
| CVE-2021-34480 | Med | 0.47 | 6.8 | 0.40 | Aug 12, 2021 | Scripting Engine Memory Corruption Vulnerability | ||
| CVE-2021-28325 | Med | 0.47 | 6.5 | 0.62 | Apr 13, 2021 | Windows SMB Information Disclosure Vulnerability | ||
| CVE-2019-1252 | Med | 0.47 | 6.5 | 0.61 | Sep 11, 2019 | An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-1286. | ||
| CVE-2017-8699 | Hig | 0.47 | 7.0 | 0.21 | Sep 13, 2017 | Windows Shell in Microsoft Windows 7 SP1, Windows Server 2008 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker to run arbitrary code in the context of the current user, due to… | ||
| CVE-2017-8588 | Hig | 0.47 | 7.0 | 0.17 | Jul 11, 2017 | Microsoft WordPad in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows a remote code execution vulnerability due to the way it parses specially… | ||
| CVE-2016-3319 | Hig | 0.47 | 7.0 | 0.19 | Aug 9, 2016 | The PDF library in Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows 10 Gold and 1511, and Microsoft Edge allows remote attackers to execute arbitrary code via a crafted PDF file, aka "Microsoft PDF Remote Code Execution Vulnerability." | ||
| CVE-2026-70307 | Hig | 0.46 | 7.0 | 0.00 | Aug 11, 2026 | Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. |
- risk 0.47cvss 6.5epss 0.23
Windows Themes Spoofing Vulnerability
- risk 0.47cvss 7.2epss 0.02
Microsoft Remote Registry Service Remote Code Execution Vulnerability
- risk 0.47cvss 5.4epss 0.03
Windows Mark of the Web Security Feature Bypass Vulnerability
- risk 0.47cvss 7.2epss 0.01
Windows Active Directory Certificate Services (AD CS) Remote Code Execution Vulnerability
- risk 0.47cvss 7.2epss 0.01
Windows DNS Server Remote Code Execution Vulnerability
- risk 0.47cvss 7.2epss 0.01
Windows DNS Server Remote Code Execution Vulnerability
- risk 0.47cvss 7.2epss 0.04
Windows DNS Server Remote Code Execution Vulnerability
- risk 0.47cvss 7.2epss 0.04
Windows DNS Server Remote Code Execution Vulnerability
- risk 0.47cvss 7.2epss 0.04
Windows DNS Server Remote Code Execution Vulnerability
- risk 0.47cvss 7.2epss 0.04
Windows DNS Server Remote Code Execution Vulnerability
- risk 0.47cvss 7.2epss 0.03
Windows Print Spooler Elevation of Privilege Vulnerability
- risk 0.47cvss 6.5epss 0.56
Windows Point-to-Point Tunneling Protocol Denial of Service Vulnerability
- risk 0.47cvss 7.2epss 0.08
Windows DNS Server Remote Code Execution Vulnerability
- risk 0.47cvss 6.8epss 0.40
Scripting Engine Memory Corruption Vulnerability
- risk 0.47cvss 6.5epss 0.62
Windows SMB Information Disclosure Vulnerability
- risk 0.47cvss 6.5epss 0.61
An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-1286.
- risk 0.47cvss 7.0epss 0.21
Windows Shell in Microsoft Windows 7 SP1, Windows Server 2008 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker to run arbitrary code in the context of the current user, due to…
- risk 0.47cvss 7.0epss 0.17
Microsoft WordPad in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows a remote code execution vulnerability due to the way it parses specially…
- risk 0.47cvss 7.0epss 0.19
The PDF library in Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows 10 Gold and 1511, and Microsoft Edge allows remote attackers to execute arbitrary code via a crafted PDF file, aka "Microsoft PDF Remote Code Execution Vulnerability."
- risk 0.46cvss 7.0epss 0.00
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
Page 142 of 245