Microsoft Windows Server 2012 vulnerabilities
4,005 known vulnerabilities affecting microsoft/windows_server_2012.
Total CVEs
4,005
CISA KEV
150
actively exploited
Public exploits
332
Exploited in wild
207
Severity breakdown
CRITICAL178HIGH2668MEDIUM1104LOW55
Vulnerabilities
Page 109 of 201
CVE-2025-27741P3HIGHCVSS 7.8vr2≥ 6.2.9200.0, < 6.2.9200.254232025-04-08
CVE-2025-27741 [HIGH] CWE-125 CVE-2025-27741: Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally.
Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally.
nvd
CVE-2023-21822P3HIGHCVSS 7.8vr2≥ 6.2.9200.0, < 6.2.9200.241162023-02-14
CVE-2023-21822 [HIGH] CWE-416 CVE-2023-21822: Windows Graphics Component Elevation of Privilege Vulnerability
Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2020-1396P3HIGHCVSS 7.8vr22020-07-14
CVE-2020-1396 [HIGH] CVE-2020-1396: An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Loc
An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Local Procedure Call (ALPC).An attacker who successfully exploited this vulnerability could run arbitrary code in the security context of the local system, aka 'Windows ALPC Elevation of Privilege Vulnerability'.
nvd
CVE-2023-36726P3HIGHCVSS 7.8vr2≥ 6.2.9200.0, < 6.2.9200.245232023-10-10
CVE-2023-36726 [HIGH] CWE-416 CVE-2023-36726: Windows Internet Key Exchange (IKE) Extension Elevation of Privilege Vulnerability
Windows Internet Key Exchange (IKE) Extension Elevation of Privilege Vulnerability
nvd
CVE-2020-0844P3HIGHCVSS 7.8vr22020-03-12
CVE-2020-0844 [HIGH] CVE-2020-0844: An elevation of privilege vulnerability exists when Connected User Experiences and Telemetry Service
An elevation of privilege vulnerability exists when Connected User Experiences and Telemetry Service improperly handles file operations, aka 'Connected User Experiences and Telemetry Service Elevation of Privilege Vulnerability'.
nvd
CVE-2023-21805P3HIGHCVSS 7.8vr2≥ 6.2.9200.0, < 6.2.9200.241162023-02-14
CVE-2023-21805 [HIGH] CWE-77 CVE-2023-21805: Windows MSHTML Platform Remote Code Execution Vulnerability
Windows MSHTML Platform Remote Code Execution Vulnerability
nvd
CVE-2025-27483P3HIGHCVSS 7.8vr22025-04-08
CVE-2025-27483 [HIGH] CWE-125 CVE-2025-27483: Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally.
Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally.
nvd
CVE-2023-29367P3HIGHCVSS 7.8vr22023-06-14
CVE-2023-29367 [HIGH] CWE-908 CVE-2023-29367: iSCSI Target WMI Provider Remote Code Execution Vulnerability
iSCSI Target WMI Provider Remote Code Execution Vulnerability
nvd
CVE-2025-27733P3HIGHCVSS 7.8vr2≥ 6.2.9200.0, < 6.2.9200.254232025-04-08
CVE-2025-27733 [HIGH] CWE-125 CVE-2025-27733: Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally.
Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally.
nvd
CVE-2023-21691P3HIGHCVSS 7.5vr2≥ 6.2.9200.0, < 6.2.9200.241162023-02-14
CVE-2023-21691 [HIGH] CWE-125 CVE-2023-21691: Microsoft Protected Extensible Authentication Protocol (PEAP) Information Disclosure Vulnerability
Microsoft Protected Extensible Authentication Protocol (PEAP) Information Disclosure Vulnerability
nvd
CVE-2021-34514P3HIGHCVSS 7.8vr2≥ 6.2.0, < 6.2.9200.234092021-07-14
CVE-2021-34514 [HIGH] CWE-269 CVE-2021-34514: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2023-36711P3HIGHCVSS 7.8vr2≥ 6.2.9200.0, < 6.2.9200.245232023-10-10
CVE-2023-36711 [HIGH] CWE-59 CVE-2023-36711: Windows Runtime C++ Template Library Elevation of Privilege Vulnerability
Windows Runtime C++ Template Library Elevation of Privilege Vulnerability
nvd
CVE-2022-24459P3HIGHCVSS 7.8vr2≥ 6.2.9200.0, < 6.2.9200.236452022-03-09
CVE-2022-24459 [HIGH] CVE-2022-24459: Windows Fax and Scan Service Elevation of Privilege Vulnerability
Windows Fax and Scan Service Elevation of Privilege Vulnerability
nvd
CVE-2022-21834P3HIGHCVSS 7.8vr2≥ 6.2.9200.0, < 6.2.9200.235842022-01-11
CVE-2022-21834 [HIGH] CVE-2022-21834: Windows User-mode Driver Framework Reflector Driver Elevation of Privilege Vulnerability
Windows User-mode Driver Framework Reflector Driver Elevation of Privilege Vulnerability
nvd
CVE-2021-40443P3HIGHCVSS 7.8vr2≥ 6.2.0, < 6.2.9200.234902021-10-13
CVE-2021-40443 [HIGH] CWE-269 CVE-2021-40443: Windows Common Log File System Driver Elevation of Privilege Vulnerability
Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2021-40466P3HIGHCVSS 7.8vr2≥ 6.2.0, < 6.2.9200.234902021-10-13
CVE-2021-40466 [HIGH] CWE-269 CVE-2021-40466: Windows Common Log File System Driver Elevation of Privilege Vulnerability
Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2022-22050P3HIGHCVSS 7.8vr2≥ 6.2.9200.0, < 6.2.9200.237712022-07-12
CVE-2022-22050 [HIGH] CVE-2022-22050: Windows Fax Service Elevation of Privilege Vulnerability
Windows Fax Service Elevation of Privilege Vulnerability
nvd
CVE-2022-24454P3HIGHCVSS 7.8vr2≥ 6.2.9200.0, < 6.2.9200.236452022-03-09
CVE-2022-24454 [HIGH] CVE-2022-24454: Windows Security Support Provider Interface Elevation of Privilege Vulnerability
Windows Security Support Provider Interface Elevation of Privilege Vulnerability
nvd
CVE-2022-37997P3HIGHCVSS 7.8vr2≥ 6.2.9200.0, < 6.2.9200.239202022-10-11
CVE-2022-37997 [HIGH] CVE-2022-37997: Windows Graphics Component Elevation of Privilege Vulnerability
Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2022-21981P3HIGHCVSS 7.8vr2≥ 6.2.9200.0, < 6.2.9200.236052022-02-09
CVE-2022-21981 [HIGH] CVE-2022-21981: Windows Common Log File System Driver Elevation of Privilege Vulnerability
Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd