VYPR

Windows Server 2012

by Microsoft

CVEs (4,875)

  • CVE-2026-59138MedAug 11, 2026
    risk 0.42cvss 6.5epss 0.01

    Null pointer dereference in Microsoft Remote Registry Service allows an authorized attacker to deny service over a network.

  • CVE-2026-42903MedJun 9, 2026
    risk 0.42cvss 6.5epss 0.01

    Null pointer dereference in Windows Kerberos allows an authorized attacker to deny service over a network.

  • CVE-2026-35422MedMay 12, 2026
    risk 0.42cvss 6.5epss 0.01

    Authentication bypass using an alternate path or channel in Windows TCP/IP allows an authorized attacker to bypass a security feature over a network.

  • CVE-2026-32151MedApr 14, 2026
    risk 0.42cvss 6.5epss 0.01

    Exposure of sensitive information to an unauthorized actor in Windows Shell allows an authorized attacker to disclose information over a network.

  • CVE-2026-27925MedApr 14, 2026
    risk 0.42cvss 6.5epss 0.00

    Use after free in Windows Universal Plug and Play (UPnP) Device Host allows an unauthorized attacker to disclose information over an adjacent network.

  • CVE-2026-26155MedApr 14, 2026
    risk 0.42cvss 6.5epss 0.01

    Microsoft Local Security Authority Subsystem Service Information Disclosure Vulnerability

  • CVE-2026-24297MedMar 10, 2026
    risk 0.42cvss 6.5epss 0.00

    Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Kerberos allows an unauthorized attacker to bypass a security feature over a network.

  • CVE-2026-21265MedJan 13, 2026
    risk 0.42cvss 6.4epss 0.01

    Windows Secure Boot stores Microsoft certificates in the UEFI KEK and DB. These original certificates are approaching expiration, and devices containing affected certificate versions must update them to maintain Secure Boot functionality and avoid compromising security by losing…

  • CVE-2026-20847MedJan 13, 2026
    risk 0.42cvss 6.5epss 0.01

    Exposure of sensitive information to an unauthorized actor in Windows Shell allows an authorized attacker to perform spoofing over a network.

  • CVE-2026-20812MedJan 13, 2026
    risk 0.42cvss 6.5epss 0.01

    Improper input validation in Windows LDAP - Lightweight Directory Access Protocol allows an authorized attacker to perform tampering over a network.

  • CVE-2025-64670MedDec 9, 2025
    risk 0.42cvss 6.5epss 0.01

    Exposure of sensitive information to an unauthorized actor in Microsoft Graphics Component allows an authorized attacker to disclose information over a network.

  • CVE-2025-62473MedDec 9, 2025
    risk 0.42cvss 6.5epss 0.01

    Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.

  • CVE-2025-62465MedDec 9, 2025
    risk 0.42cvss 6.5epss 0.00

    Null pointer dereference in Windows DirectX allows an authorized attacker to deny service locally.

  • CVE-2025-62463MedDec 9, 2025
    risk 0.42cvss 6.5epss 0.00

    Null pointer dereference in Windows DirectX allows an authorized attacker to deny service locally.

  • CVE-2025-60708MedNov 11, 2025
    risk 0.42cvss 6.5epss 0.00

    Untrusted pointer dereference in Storvsp.sys Driver allows an authorized attacker to deny service locally.

  • CVE-2025-59259MedOct 14, 2025
    risk 0.42cvss 6.5epss 0.01

    Improper validation of specified type of input in Windows Local Session Manager (LSM) allows an authorized attacker to deny service over a network.

  • CVE-2025-59257MedOct 14, 2025
    risk 0.42cvss 6.5epss 0.01

    Improper validation of specified type of input in Windows Local Session Manager (LSM) allows an authorized attacker to deny service over a network.

  • CVE-2025-59244MedOct 14, 2025
    risk 0.42cvss 6.5epss 0.01

    External control of file name or path in Windows Core Shell allows an unauthorized attacker to perform spoofing over a network.

  • CVE-2025-59214MedOct 14, 2025
    risk 0.42cvss 6.5epss 0.02

    Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an unauthorized attacker to perform spoofing over a network.

  • CVE-2025-59185MedOct 14, 2025
    risk 0.42cvss 6.5epss 0.01

    External control of file name or path in Windows Core Shell allows an unauthorized attacker to perform spoofing over a network.

Page 173 of 244