VYPR

Windows Server 2012

by Microsoft

CVEs (4,861)

  • CVE-2021-31959MedJun 8, 2021
    risk 0.42cvss 6.4epss 0.09

    Scripting Engine Memory Corruption Vulnerability

  • CVE-2021-28328MedApr 13, 2021
    risk 0.42cvss 6.5epss 0.02

    Windows DNS Information Disclosure Vulnerability

  • CVE-2021-24080MedFeb 25, 2021
    risk 0.42cvss 6.5epss 0.03

    Windows Trust Verification API Denial of Service Vulnerability

  • CVE-2020-16996MedDec 10, 2020
    risk 0.42cvss 6.5epss 0.02

    Kerberos Security Feature Bypass Vulnerability

  • CVE-2020-17040MedNov 11, 2020
    risk 0.42cvss 6.5epss 0.03

    Windows Hyper-V Security Feature Bypass Vulnerability

  • CVE-2020-15706MedJul 29, 2020
    risk 0.42cvss 6.4epss 0.01

    GRUB2 contains a race condition in grub_script_function_create() leading to a use-after-free vulnerability which can be triggered by redefining a function whilst the same function is already executing, leading to arbitrary code execution and secure boot restriction bypass. This…

  • CVE-2020-15705MedJul 29, 2020
    risk 0.42cvss 6.4epss 0.01

    GRUB2 fails to validate kernel signature when booted directly without shim, allowing secure boot to be bypassed. This only affects systems where the kernel signing certificate has been imported directly into the secure boot database and the GRUB image is booted directly without…

  • CVE-2019-1043MedJun 12, 2019
    risk 0.42cvss 6.4epss 0.03

    A remote code execution vulnerability exists in the way that comctl32.dll handles objects in memory. The vulnerability could corrupt memory in such a way that an attacker could execute arbitrary code in the context of the current user. An attacker who successfully exploited the…

  • CVE-2017-0174MedAug 8, 2017
    risk 0.42cvss 6.5epss 0.03

    Windows NetBIOS in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows a denial of service vulnerability when it improperly handles NetBIOS packets, aka…

  • CVE-2016-3371MedSep 14, 2016
    risk 0.42cvss 5.5epss 0.40

    The kernel API in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold, 1511, and 1607 does not properly enforce permissions, which allows local users to obtain sensitive…

  • CVE-2025-60723MedNov 11, 2025
    risk 0.41cvss 6.3epss 0.01

    Concurrent execution using shared resource with improper synchronization ('race condition') in Windows DirectX allows an authorized attacker to deny service over a network.

  • CVE-2025-48813MedOct 14, 2025
    risk 0.41cvss 6.3epss 0.00

    Use of a key past its expiration date in Virtual Secure Mode allows an authorized attacker to perform spoofing locally.

  • CVE-2024-28898MedApr 9, 2024
    risk 0.41cvss 6.3epss 0.01

    Secure Boot Security Feature Bypass Vulnerability

  • CVE-2022-21928MedJan 11, 2022
    risk 0.41cvss 6.3epss 0.01

    Windows Resilient File System (ReFS) Remote Code Execution Vulnerability

  • CVE-2021-34500MedJul 14, 2021
    risk 0.41cvss 6.3epss 0.03

    Windows Kernel Memory Information Disclosure Vulnerability

  • CVE-2019-1053MedJun 12, 2019
    risk 0.41cvss 6.3epss 0.01

    An elevation of privilege vulnerability exists when the Windows Shell fails to validate folder shortcuts. An attacker who successfully exploited the vulnerability could elevate privileges by escaping a sandbox. To exploit this vulnerability, an attacker would require…

  • CVE-2019-0986MedJun 12, 2019
    risk 0.41cvss 6.3epss 0.02

    An elevation of privilege vulnerability exists when the Windows User Profile Service (ProfSvc) improperly handles symlinks. An attacker who successfully exploited this vulnerability could delete files and folders in an elevated context. To exploit this vulnerability, an attacker…

  • CVE-2018-0833MedFeb 15, 2018
    risk 0.41cvss 5.3epss 0.40

    The Microsoft Server Message Block 2.0 and 3.0 (SMBv2/SMBv3) client in Windows 8.1 and RT 8.1 and Windows Server 2012 R2 allows a denial of service vulnerability due to how specially crafted requests are handled, aka "SMBv2/SMBv3 Null Dereference Denial of Service Vulnerability".

  • CVE-2017-0055MedMar 17, 2017
    risk 0.41cvss 6.1epss 0.16

    Microsoft Internet Information Server (IIS) in Windows Vista SP2; Windows Server 2008 SP2 and R2; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; Windows 10 Gold, 1511, and 1607; and Windows Server 2016 allows remote attackers to perform cross-site…

  • CVE-2016-3302MedSep 14, 2016
    risk 0.41cvss 6.3epss 0.02

    Microsoft Windows 8.1, Windows Server 2012 R2, Windows RT 8.1, and Windows 10 Gold, 1511, and 1607, when the lock screen is enabled, do not properly restrict the loading of web content, which allows physically proximate attackers to execute arbitrary code via a (1) crafted Wi-Fi…

Page 182 of 244