Windows Server 2025
by Microsoft
CVEs (1,879)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2025-21234 | Hig | 0.51 | 7.8 | 0.01 | Jan 14, 2025 | Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability | ||
| CVE-2024-49114 | Hig | 0.51 | 7.8 | 0.01 | Dec 12, 2024 | Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability | ||
| CVE-2024-49090 | Hig | 0.51 | 7.8 | 0.01 | Dec 12, 2024 | Windows Common Log File System Driver Elevation of Privilege Vulnerability | ||
| CVE-2024-49088 | Hig | 0.51 | 7.8 | 0.01 | Dec 12, 2024 | Windows Common Log File System Driver Elevation of Privilege Vulnerability | ||
| CVE-2024-49079 | Hig | 0.51 | 7.8 | 0.01 | Dec 12, 2024 | Input Method Editor (IME) Remote Code Execution Vulnerability | ||
| CVE-2024-49076 | Hig | 0.51 | 7.8 | 0.01 | Dec 12, 2024 | Windows Virtualization-Based Security (VBS) Enclave Elevation of Privilege Vulnerability | ||
| CVE-2024-49072 | Hig | 0.51 | 7.8 | 0.01 | Dec 12, 2024 | Windows Task Scheduler Elevation of Privilege Vulnerability | ||
| CVE-2024-49046 | Hig | 0.51 | 7.8 | 0.00 | Nov 12, 2024 | Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability | ||
| CVE-2024-49019 | Hig | 0.51 | 7.8 | 0.02 | Nov 12, 2024 | Active Directory Certificate Services Elevation of Privilege Vulnerability | ||
| CVE-2024-43644 | Hig | 0.51 | 7.8 | 0.01 | Nov 12, 2024 | Windows Client-Side Caching Elevation of Privilege Vulnerability | ||
| CVE-2024-43641 | Hig | 0.51 | 7.8 | 0.01 | Nov 12, 2024 | Windows Registry Elevation of Privilege Vulnerability | ||
| CVE-2024-43636 | Hig | 0.51 | 7.8 | 0.01 | Nov 12, 2024 | Win32k Elevation of Privilege Vulnerability | ||
| CVE-2024-43630 | Hig | 0.51 | 7.8 | 0.04 | Nov 12, 2024 | Windows Kernel Elevation of Privilege Vulnerability | ||
| CVE-2024-43629 | Hig | 0.51 | 7.8 | 0.04 | Nov 12, 2024 | Windows DWM Core Library Elevation of Privilege Vulnerability | ||
| CVE-2024-43626 | Hig | 0.51 | 7.8 | 0.01 | Nov 12, 2024 | Windows Telephony Service Elevation of Privilege Vulnerability | ||
| CVE-2024-43623 | Hig | 0.51 | 7.8 | 0.04 | Nov 12, 2024 | Windows NT OS Kernel Elevation of Privilege Vulnerability | ||
| CVE-2024-43452 | Hig | 0.51 | 7.5 | 0.24 | Nov 12, 2024 | Windows Registry Elevation of Privilege Vulnerability | ||
| CVE-2024-43583 | Hig | 0.51 | 7.8 | 0.01 | Oct 8, 2024 | Winlogon Elevation of Privilege Vulnerability | ||
| CVE-2013-3900 | Med | 0.51 | 5.5 | 0.45 | KEV | Dec 11, 2013 | Why is Microsoft republishing a CVE from 2013? We are republishing CVE-2013-3900 in the Security Update Guide to update the Security Updates table and to inform customers that the EnableCertPaddingCheck is available in all currently supported versions of Windows 10 and Windows… | |
| CVE-2026-20852 | Hig | 0.50 | 7.7 | 0.01 | Jan 13, 2026 | Incorrect privilege assignment in Windows Hello allows an unauthorized attacker to perform tampering locally. |
- risk 0.51cvss 7.8epss 0.01
Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability
- risk 0.51cvss 7.8epss 0.01
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
- risk 0.51cvss 7.8epss 0.01
Windows Common Log File System Driver Elevation of Privilege Vulnerability
- risk 0.51cvss 7.8epss 0.01
Windows Common Log File System Driver Elevation of Privilege Vulnerability
- risk 0.51cvss 7.8epss 0.01
Input Method Editor (IME) Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.01
Windows Virtualization-Based Security (VBS) Enclave Elevation of Privilege Vulnerability
- risk 0.51cvss 7.8epss 0.01
Windows Task Scheduler Elevation of Privilege Vulnerability
- risk 0.51cvss 7.8epss 0.00
Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability
- risk 0.51cvss 7.8epss 0.02
Active Directory Certificate Services Elevation of Privilege Vulnerability
- risk 0.51cvss 7.8epss 0.01
Windows Client-Side Caching Elevation of Privilege Vulnerability
- risk 0.51cvss 7.8epss 0.01
Windows Registry Elevation of Privilege Vulnerability
- risk 0.51cvss 7.8epss 0.01
Win32k Elevation of Privilege Vulnerability
- risk 0.51cvss 7.8epss 0.04
Windows Kernel Elevation of Privilege Vulnerability
- risk 0.51cvss 7.8epss 0.04
Windows DWM Core Library Elevation of Privilege Vulnerability
- risk 0.51cvss 7.8epss 0.01
Windows Telephony Service Elevation of Privilege Vulnerability
- risk 0.51cvss 7.8epss 0.04
Windows NT OS Kernel Elevation of Privilege Vulnerability
- risk 0.51cvss 7.5epss 0.24
Windows Registry Elevation of Privilege Vulnerability
- risk 0.51cvss 7.8epss 0.01
Winlogon Elevation of Privilege Vulnerability
- risk 0.51cvss 5.5epss 0.45
Why is Microsoft republishing a CVE from 2013? We are republishing CVE-2013-3900 in the Security Update Guide to update the Security Updates table and to inform customers that the EnableCertPaddingCheck is available in all currently supported versions of Windows 10 and Windows…
- risk 0.50cvss 7.7epss 0.01
Incorrect privilege assignment in Windows Hello allows an unauthorized attacker to perform tampering locally.
Page 37 of 94