Microsoft Windows Server 2012 vulnerabilities
3,707 known vulnerabilities affecting microsoft/windows_server_2012.
Total CVEs
3,707
CISA KEV
148
actively exploited
Public exploits
290
Exploited in wild
141
Severity breakdown
CRITICAL157HIGH2452MEDIUM1046LOW52
Vulnerabilities
Page 128 of 186
CVE-2020-0866HIGHCVSS 7.8vr22020-03-12
CVE-2020-0866 [HIGH] CVE-2020-0866: An elevation of privilege vulnerability exists when the Windows Work Folder Service improperly handl
An elevation of privilege vulnerability exists when the Windows Work Folder Service improperly handles file operations, aka 'Windows Work Folder Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0777, CVE-2020-0797, CVE-2020-0800, CVE-2020-0864, CVE-2020-0865, CVE-2020-0897.
nvd
CVE-2020-0778HIGHCVSS 7.8vr22020-03-12
CVE-2020-0778 [HIGH] CVE-2020-0778: An elevation of privilege vulnerability exists in the way that the Windows Network Connections Servi
An elevation of privilege vulnerability exists in the way that the Windows Network Connections Service handles objects in memory, aka 'Windows Network Connections Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0802, CVE-2020-0803, CVE-2020-0804, CVE-2020-0845.
nvd
CVE-2020-0771HIGHCVSS 7.8vr22020-03-12
CVE-2020-0771 [HIGH] CVE-2020-0771: An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memor
An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memory.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Windows CSC Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0769.
nvd
CVE-2020-0772HIGHCVSS 7.8vr22020-03-12
CVE-2020-0772 [HIGH] CVE-2020-0772: An elevation of privilege vulnerability exists when Windows Error Reporting improperly handles memor
An elevation of privilege vulnerability exists when Windows Error Reporting improperly handles memory.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Windows Error Reporting Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0806.
nvd
CVE-2020-0780HIGHCVSS 7.8vr22020-03-12
CVE-2020-0780 [HIGH] CVE-2020-0780: An elevation of privilege vulnerability exists in the way that the Windows Network List Service hand
An elevation of privilege vulnerability exists in the way that the Windows Network List Service handles objects in memory, aka 'Windows Network List Service Elevation of Privilege Vulnerability'.
nvd
CVE-2020-0887HIGHCVSS 7.8vr22020-03-12
CVE-2020-0887 [HIGH] CVE-2020-0887: An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properl
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0788, CVE-2020-0877.
nvd
CVE-2020-0781HIGHCVSS 7.8vr22020-03-12
CVE-2020-0781 [HIGH] CVE-2020-0781: An elevation of privilege vulnerability exists when the Windows Universal Plug and Play (UPnP) servi
An elevation of privilege vulnerability exists when the Windows Universal Plug and Play (UPnP) service improperly handles objects in memory, aka 'Windows UPnP Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0783.
nvd
CVE-2020-0843HIGHCVSS 7.8vr22020-03-12
CVE-2020-0843 [HIGH] CVE-2020-0843: An elevation of privilege vulnerability exists in Windows Installer because of the way Windows Insta
An elevation of privilege vulnerability exists in Windows Installer because of the way Windows Installer handles certain filesystem operations.To exploit the vulnerability, an attacker would require unprivileged execution on the victim system, aka 'Windows Installer Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0779, CVE-2020-0798,
nvd
CVE-2020-0857HIGHCVSS 7.8vr22020-03-12
CVE-2020-0857 [HIGH] CVE-2020-0857: An elevation of privilege vulnerability exists in the way that the Windows Search Indexer handles ob
An elevation of privilege vulnerability exists in the way that the Windows Search Indexer handles objects in memory, aka 'Windows Search Indexer Elevation of Privilege Vulnerability'.
nvd
CVE-2020-0842HIGHCVSS 7.8vr22020-03-12
CVE-2020-0842 [HIGH] CVE-2020-0842: An elevation of privilege vulnerability exists in Windows Installer because of the way Windows Insta
An elevation of privilege vulnerability exists in Windows Installer because of the way Windows Installer handles certain filesystem operations.To exploit the vulnerability, an attacker would require unprivileged execution on the victim system, aka 'Windows Installer Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0779, CVE-2020-0798,
nvd
CVE-2020-0865HIGHCVSS 7.8vr22020-03-12
CVE-2020-0865 [HIGH] CVE-2020-0865: An elevation of privilege vulnerability exists when the Windows Work Folder Service improperly handl
An elevation of privilege vulnerability exists when the Windows Work Folder Service improperly handles file operations, aka 'Windows Work Folder Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0777, CVE-2020-0797, CVE-2020-0800, CVE-2020-0864, CVE-2020-0866, CVE-2020-0897.
nvd
CVE-2020-0806HIGHCVSS 7.8vr22020-03-12
CVE-2020-0806 [HIGH] CVE-2020-0806: An elevation of privilege vulnerability exists in Windows Error Reporting (WER) when WER handles and
An elevation of privilege vulnerability exists in Windows Error Reporting (WER) when WER handles and executes files, aka 'Windows Error Reporting Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0772.
nvd
CVE-2020-0861HIGHCVSS 7.8vr22020-03-12
CVE-2020-0861 [HIGH] CVE-2020-0861: An information disclosure vulnerability exists when the Windows Network Driver Interface Specificati
An information disclosure vulnerability exists when the Windows Network Driver Interface Specification (NDIS) improperly handles memory.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Windows Network Driver Interface Specification (NDIS) Information Disclosure Vulnerability'.
nvd
CVE-2020-0840HIGHCVSS 7.8vr22020-03-12
CVE-2020-0840 [HIGH] CVE-2020-0840: An elevation of privilege vulnerability exists when Windows improperly handles hard links, aka 'Wind
An elevation of privilege vulnerability exists when Windows improperly handles hard links, aka 'Windows Hard Link Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0841, CVE-2020-0849, CVE-2020-0896.
nvd
CVE-2020-0788HIGHCVSS 7.8vr22020-03-12
CVE-2020-0788 [HIGH] CVE-2020-0788: An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properl
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0877, CVE-2020-0887.
nvd
CVE-2020-0845HIGHCVSS 7.8vr22020-03-12
CVE-2020-0845 [HIGH] CVE-2020-0845: An elevation of privilege vulnerability exists in the way that the Windows Network Connections Servi
An elevation of privilege vulnerability exists in the way that the Windows Network Connections Service handles objects in memory, aka 'Windows Network Connections Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0778, CVE-2020-0802, CVE-2020-0803, CVE-2020-0804.
nvd
CVE-2020-0800HIGHCVSS 7.8vr22020-03-12
CVE-2020-0800 [HIGH] CVE-2020-0800: An elevation of privilege vulnerability exists when the Windows Work Folder Service improperly handl
An elevation of privilege vulnerability exists when the Windows Work Folder Service improperly handles file operations, aka 'Windows Work Folder Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0777, CVE-2020-0797, CVE-2020-0864, CVE-2020-0865, CVE-2020-0866, CVE-2020-0897.
nvd
CVE-2020-0844HIGHCVSS 7.8vr22020-03-12
CVE-2020-0844 [HIGH] CVE-2020-0844: An elevation of privilege vulnerability exists when Connected User Experiences and Telemetry Service
An elevation of privilege vulnerability exists when Connected User Experiences and Telemetry Service improperly handles file operations, aka 'Connected User Experiences and Telemetry Service Elevation of Privilege Vulnerability'.
nvd
CVE-2020-0874MEDIUMCVSS 5.5vr22020-03-12
CVE-2020-0874 [MEDIUM] CVE-2020-0874: An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface
An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in memory, allowing an attacker to retrieve information from a targeted system, aka 'Windows GDI Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-0774, CVE-2020-0879, CVE-2020-0880, CVE-2020-0882.
nvd
CVE-2020-0871MEDIUMCVSS 5.5vr22020-03-12
CVE-2020-0871 [MEDIUM] CVE-2020-0871: An information disclosure vulnerability exists when Windows Network Connections Service fails to pro
An information disclosure vulnerability exists when Windows Network Connections Service fails to properly handle objects in memory, aka 'Windows Network Connections Service Information Disclosure Vulnerability'.
nvd