VYPR

Windows Server 2012

by Microsoft

CVEs (4,890)

  • CVE-2019-1172MedAug 14, 2019
    risk 0.28cvss 4.3epss 0.04

    An information disclosure vulnerability exists in Azure Active Directory (AAD) Microsoft Account (MSA) during the login request session. An attacker who successfully exploited the vulnerability could take over a user's account. To exploit the vulnerability, an attacker would…

  • CVE-2018-8320MedOct 10, 2018
    risk 0.28cvss 4.3epss 0.05

    A security feature bypass vulnerability exists in DNS Global Blocklist feature, aka "Windows DNS Security Feature Bypass Vulnerability." This affects Windows Server 2012 R2, Windows Server 2008, Windows Server 2012, Windows Server 2019, Windows Server 2016, Windows Server 2008…

  • CVE-2017-0192MedApr 12, 2017
    risk 0.28cvss 4.3epss 0.06

    The Adobe Type Manager Font Driver (ATMFD.dll) in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; and Windows 10 Gold , 1511, 1607, and 1703 allows an attacker to gain sensitive…

  • CVE-2025-21214MedJan 14, 2025
    risk 0.27cvss 4.2epss 0.01

    Windows BitLocker Information Disclosure Vulnerability

  • CVE-2025-21210MedJan 14, 2025
    risk 0.27cvss 4.2epss 0.01

    Windows BitLocker Information Disclosure Vulnerability

  • CVE-2024-38143MedAug 13, 2024
    risk 0.27cvss 4.2epss 0.02

    Windows WLAN AutoConfig Service Elevation of Privilege Vulnerability

  • CVE-2024-28922MedApr 9, 2024
    risk 0.27cvss 4.1epss 0.01

    Secure Boot Security Feature Bypass Vulnerability

  • CVE-2022-29127MedMay 10, 2022
    risk 0.27cvss 4.2epss 0.01

    BitLocker Security Feature Bypass Vulnerability

  • CVE-2021-28316MedApr 13, 2021
    risk 0.27cvss 4.2epss 0.01

    Windows WLAN AutoConfig Service Security Feature Bypass Vulnerability

  • CVE-2025-29839MedMay 13, 2025
    risk 0.26cvss 4.0epss 0.00

    Out-of-bounds read in Windows File Server allows an unauthorized attacker to disclose information locally.

  • CVE-2020-1033MedSep 11, 2020
    risk 0.26cvss 4.0epss 0.01

    An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory. An attacker who successfully exploited this vulnerability could obtain information to further compromise the user’s system. An authenticated attacker could…

  • CVE-2026-45642LowJun 9, 2026
    risk 0.25cvss 3.9epss 0.00

    Improper input validation in Microsoft Azure Attestation service and Device Health Attestation Service allows an authorized attacker to perform spoofing with a physical attack.

  • CVE-2018-0878LowMar 14, 2018
    risk 0.25cvss 3.1epss 0.21

    Windows Remote Assistance in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and 1709, Windows Server 2016 and Windows Server, version 1709 allows an information disclosure…

  • CVE-2017-0159LowApr 12, 2017
    risk 0.24cvss 3.7epss 0.04

    A security feature bypass vulnerability exists in Windows 10 1607, Windows Server 2012 R2, and Windows 2016 when ADFS incorrectly treats requests coming from Extranet clients as Intranet requests, aka "ADFS Security Feature Bypass Vulnerability."

  • CVE-2025-49760LowJul 8, 2025
    risk 0.23cvss 3.5epss 0.01

    External control of file name or path in Windows Storage allows an authorized attacker to perform spoofing over a network.

  • CVE-2020-24588LowMay 11, 2021
    risk 0.23cvss 3.5epss 0.04

    The 802.11 standard that underpins Wi-Fi Protected Access (WPA, WPA2, and WPA3) and Wired Equivalent Privacy (WEP) doesn't require that the A-MSDU flag in the plaintext QoS header field is authenticated. Against devices that support receiving non-SSP A-MSDU frames (which is…

  • CVE-2017-8676LowSep 13, 2017
    risk 0.23cvss 3.3epss 0.14

    The Windows Graphics Device Interface (GDI) in Microsoft Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; Windows 10 Gold, 1511, 1607, 1703, and Server 2016; Office 2007 SP3; Office 2010 SP2; Word Viewer; Office for…

  • CVE-2017-0042LowMar 17, 2017
    risk 0.23cvss 3.1epss 0.30

    Windows Media Player in Microsoft Windows 8.1; Windows Server 2012 R2; Windows RT 8.1; Windows 7 SP1; Windows 2008 SP2 and R2 SP1, Windows Server 2016; Windows Vista SP2; and Windows 10 Gold, 1511, and 1607 allows remote attackers to obtain sensitive information via a crafted…

  • CVE-2016-3354LowSep 14, 2016
    risk 0.23cvss 3.3epss 0.14

    The Graphics Device Interface (GDI) in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold, 1511, and 1607 allows local users to bypass the ASLR protection mechanism via…

  • CVE-2016-3251LowJul 13, 2016
    risk 0.23cvss 2.8epss 0.58

    The GDI component in the kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 allows local users to obtain sensitive kernel-address…

Page 223 of 245