Microsoft Windows Server 2012 vulnerabilities
4,005 known vulnerabilities affecting microsoft/windows_server_2012.
Total CVEs
4,005
CISA KEV
150
actively exploited
Public exploits
332
Exploited in wild
207
Severity breakdown
CRITICAL178HIGH2668MEDIUM1104LOW55
Vulnerabilities
Page 120 of 201
CVE-2023-21558P3HIGHCVSS 7.8vr2≥ 6.2.9200.0, < 6.2.9200.240752023-01-10
CVE-2023-21558 [HIGH] CWE-20 CVE-2023-21558: Windows Error Reporting Service Elevation of Privilege Vulnerability
Windows Error Reporting Service Elevation of Privilege Vulnerability
nvd
CVE-2023-21767P3HIGHCVSS 7.8vr22023-01-10
CVE-2023-21767 [HIGH] CWE-20 CVE-2023-21767: Windows Overlay Filter Elevation of Privilege Vulnerability
Windows Overlay Filter Elevation of Privilege Vulnerability
nvd
CVE-2021-34455P3HIGHCVSS 7.8vr2≥ 6.2.0, < 6.2.9200.234092021-07-16
CVE-2021-34455 [HIGH] CWE-269 CVE-2021-34455: Windows File History Service Elevation of Privilege Vulnerability
Windows File History Service Elevation of Privilege Vulnerability
nvd
CVE-2021-38638P3HIGHCVSS 7.8≥ 6.2.0, < 6.2.9200.234622021-09-15
CVE-2021-38638 [HIGH] CWE-269 CVE-2021-38638: Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
nvd
CVE-2021-38628P3HIGHCVSS 7.8≥ 6.2.0, < 6.2.9200.234622021-09-15
CVE-2021-38628 [HIGH] CWE-269 CVE-2021-38628: Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
nvd
CVE-2023-21561P3HIGHCVSS 7.8vr2≥ 6.2.9200.0, < 6.2.9200.240752023-01-10
CVE-2023-21561 [HIGH] CWE-190 CVE-2023-21561: Microsoft Cryptographic Services Elevation of Privilege Vulnerability
Microsoft Cryptographic Services Elevation of Privilege Vulnerability
nvd
CVE-2021-41366P3HIGHCVSS 7.8vr2≥ 6.2.0, < 6.2.9200.235172021-11-10
CVE-2021-41366 [HIGH] CWE-269 CVE-2021-41366: Credential Security Support Provider Protocol (CredSSP) Elevation of Privilege Vulnerability
Credential Security Support Provider Protocol (CredSSP) Elevation of Privilege Vulnerability
nvd
CVE-2023-21756P3HIGHCVSS 7.8vr2≥ 6.2.9200.0, < 6.2.9200.243742023-07-11
CVE-2023-21756 [HIGH] CWE-416 CVE-2023-21756: Windows Win32k Elevation of Privilege Vulnerability
Windows Win32k Elevation of Privilege Vulnerability
nvd
CVE-2023-21804P3HIGHCVSS 7.8vr2≥ 6.2.9200.0, < 6.2.9200.241162023-02-14
CVE-2023-21804 [HIGH] CWE-122 CVE-2023-21804: Windows Graphics Component Elevation of Privilege Vulnerability
Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2022-34706P3HIGHCVSS 7.8vr2≥ 6.2.9200.0, < 6.2.9200.238172022-08-09
CVE-2022-34706 [HIGH] CWE-269 CVE-2022-34706: Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability
nvd
CVE-2023-21524P3HIGHCVSS 7.8vr2≥ 6.2.9200.0, < 6.2.9200.240752023-01-10
CVE-2023-21524 [HIGH] CWE-798 CVE-2023-21524: Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability
nvd
CVE-2023-24910P3HIGHCVSS 7.8vr2≥ 6.2.9200.0, < 6.2.9200.241682023-03-14
CVE-2023-24910 [HIGH] CWE-476 CVE-2023-24910: Windows Graphics Component Elevation of Privilege Vulnerability
Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2023-23412P3HIGHCVSS 7.8vr2≥ 6.2.9200.0, < 6.2.9200.241682023-03-14
CVE-2023-23412 [HIGH] CWE-269 CVE-2023-23412: Windows Accounts Picture Elevation of Privilege Vulnerability
Windows Accounts Picture Elevation of Privilege Vulnerability
nvd
CVE-2022-41100P3HIGHCVSS 7.8vr22022-11-09
CVE-2022-41100 [HIGH] CWE-362 CVE-2022-41100: Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
nvd
CVE-2022-41045P3HIGHCVSS 7.8vr2≥ 6.2.9200.0, < 6.2.9200.239682022-11-09
CVE-2022-41045 [HIGH] CWE-362 CVE-2022-41045: Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
nvd
CVE-2022-41093P3HIGHCVSS 7.8vr22022-11-09
CVE-2022-41093 [HIGH] CWE-362 CVE-2022-41093: Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
nvd
CVE-2021-26896P3HIGHCVSS 7.5vr2≥ 6.2.0, < publication2021-03-11
CVE-2021-26896 [HIGH] CVE-2021-26896: Windows DNS Server Denial of Service Vulnerability
Windows DNS Server Denial of Service Vulnerability
nvd
CVE-2015-1676P4LOWCVSS 2.1PoCvr22015-05-13
CVE-2015-1676 [LOW] CWE-200 CVE-2015-1676: The kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008
The kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allow local users to bypass the ASLR protection mechanism via a crafted function call, aka "Microsoft Windows Kernel Memory Disclosure Vuln
nvd
CVE-2015-1679P4LOWCVSS 2.1PoCvr22015-05-13
CVE-2015-1679 [LOW] CVE-2015-1679: The kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008
The kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allow local users to bypass the ASLR protection mechanism via a crafted function call, aka "Microsoft Windows Kernel Memory Disclosure Vulnerabilit
nvd
CVE-2015-1680P4LOWCVSS 2.1PoCvr22015-05-13
CVE-2015-1680 [LOW] CVE-2015-1680: The kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008
The kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allow local users to bypass the ASLR protection mechanism via a crafted function call, aka "Microsoft Windows Kernel Memory Disclosure Vulnerabilit
nvd