VYPR

Windows Server 2012

by Microsoft

CVEs (4,890)

  • CVE-2026-49794MedJul 14, 2026
    risk 0.00cvss 4.6epss 0.00

    Out-of-bounds read in Windows USB Audio Class driver (usbaudio.sys) allows an unauthorized attacker to disclose information with a physical attack.

  • CVE-2026-49791HigJul 14, 2026
    risk 0.00cvss 7.1epss 0.00

    Improper link resolution before file access ('link following') in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to elevate privileges locally.

  • CVE-2026-49790HigJul 14, 2026
    risk 0.00cvss 7.3epss 0.00

    Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability

  • CVE-2026-49789HigJul 14, 2026
    risk 0.00cvss 7.3epss 0.00

    Stack-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally.

  • CVE-2026-49184HigJul 14, 2026
    risk 0.00cvss 8.4epss 0.00

    Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.

  • CVE-2026-49181HigJul 14, 2026
    risk 0.00cvss 7.5epss 0.01

    Integer underflow (wrap or wraparound) in Windows DHCP Client allows an unauthorized attacker to elevate privileges over a network.

  • CVE-2026-49180MedJul 14, 2026
    risk 0.00cvss 5.5epss 0.00

    Improper link resolution before file access ('link following') in Universal Plug and Play (upnp.dll) allows an authorized attacker to disclose information locally.

  • CVE-2026-49178HigJul 14, 2026
    risk 0.00cvss 8.8epss 0.01

    Heap-based buffer overflow in Active Directory Domain Services allows an authorized attacker to execute code over a network.

  • CVE-2026-49164HigJul 14, 2026
    risk 0.00cvss 8.1epss 0.01

    Heap-based buffer overflow in Active Directory Domain Services allows an unauthorized attacker to execute code over a network.

  • CVE-2026-48564HigJul 14, 2026
    risk 0.00cvss 8.8epss 0.01

    Heap-based buffer overflow in Windows DHCP Server allows an authorized attacker to execute code over a network.

  • CVE-2026-44806MedJul 14, 2026
    risk 0.00cvss 5.3epss 0.01

    Missing release of memory after effective lifetime in Windows Cryptographic Services allows an unauthorized attacker to deny service over a network.

  • CVE-2026-42990CriJul 14, 2026
    risk 0.00cvss 9.8epss 0.01

    Heap-based buffer overflow in SQL Server ODBC driver allows an unauthorized attacker to execute code over a network.

  • CVE-2026-42975HigJul 14, 2026
    risk 0.00cvss 8.0epss 0.01

    Heap-based buffer overflow in Windows Bluetooth Port Driver allows an unauthorized attacker to execute code over an adjacent network.

  • CVE-2026-40378HigJul 14, 2026
    risk 0.00cvss 7.5epss 0.01

    Memory allocation with excessive size value in Windows Local Security Authority Subsystem Service (LSASS) allows an unauthorized attacker to deny service over a network.

  • CVE-2026-34346MedJul 14, 2026
    risk 0.00cvss 5.5epss 0.00

    Cleartext transmission of sensitive information in Windows Ancillary Function Driver for WinSock allows an authorized attacker to disclose information locally.

  • CVE-2026-33842MedJul 14, 2026
    risk 0.00cvss 5.5epss 0.00

    Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.

  • CVE-2015-6126Dec 9, 2015
    risk 0.00cvss —epss 0.02

    Race condition in the Pragmatic General Multicast (PGM) protocol implementation in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 Gold and 1511…

  • CVE-2015-6113Nov 11, 2015
    risk 0.00cvss —epss 0.02

    The kernel in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 Gold and 1511 allows local users to bypass intended filesystem permissions by leveraging…

  • CVE-2015-6112Nov 11, 2015
    risk 0.00cvss —epss 0.03

    SChannel in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 lacks the required extended master-secret binding support to ensure that a server's X.509 certificate…

  • CVE-2015-6109Nov 11, 2015
    risk 0.00cvss —epss 0.03

    The kernel in Microsoft Windows 8.1, Windows Server 2012 R2, Windows RT 8.1, and Windows 10 Gold and 1511 allows local users to bypass the KASLR protection mechanism, and consequently discover a driver base address, via a crafted application, aka "Windows Kernel Memory…

Page 241 of 245