cbcvebase.

Microsoft Windows Server 2012 vulnerabilities

4,005 known vulnerabilities affecting microsoft/windows_server_2012.

Total CVEs
4,005
CISA KEV
150
actively exploited
Public exploits
332
Exploited in wild
207
Severity breakdown
CRITICAL178HIGH2668MEDIUM1104LOW55

Vulnerabilities

Page 162 of 201
CVE-2018-0881P4HIGHCVSS 7.0vr22018-03-14
CVE-2018-0881 [HIGH] CVE-2018-0881: The Microsoft Video Control in Microsoft Windows Server 2008 R2 SP1, Windows 7 SP1, Windows 8.1 and The Microsoft Video Control in Microsoft Windows Server 2008 R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and 1709, Windows Server 2016 and Windows Server, version 1709 allows an elevation of privilege due to how objects are handled in memory, aka "Microsoft Video Control Elevation of Privilege Vul
nvd
CVE-2018-8167P4HIGHCVSS 7.0vr2v(Server Core installation)2018-05-09
CVE-2018-8167 [HIGH] CWE-404 CVE-2018-8167: An elevation of privilege vulnerability exists when the Windows Common Log File System (CLFS) driver An elevation of privilege vulnerability exists when the Windows Common Log File System (CLFS) driver improperly handles objects in memory, aka "Windows Common Log File System Driver Elevation of Privilege Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server 2012, Windows 8.1, Windows Server
nvd
CVE-2020-0936P4HIGHCVSS 7.1vr22020-04-15
CVE-2020-0936 [HIGH] CVE-2020-0936: An elevation of privilege vulnerability exists when a Windows scheduled task improperly handles file An elevation of privilege vulnerability exists when a Windows scheduled task improperly handles file redirections, aka 'Windows Scheduled Task Elevation of Privilege Vulnerability'.
nvd
CVE-2022-26784P4MEDIUMCVSS 6.5vr2≥ 6.2.9200.0, < 6.2.9200.236792022-04-15
CVE-2022-26784 [MEDIUM] CVE-2022-26784: Windows Cluster Shared Volume (CSV) Denial of Service Vulnerability Windows Cluster Shared Volume (CSV) Denial of Service Vulnerability
nvd
CVE-2022-24538P4MEDIUMCVSS 6.5vr2≥ 6.2.9200.0, < 6.2.9200.236792022-04-15
CVE-2022-24538 [MEDIUM] CVE-2022-24538: Windows Cluster Shared Volume (CSV) Denial of Service Vulnerability Windows Cluster Shared Volume (CSV) Denial of Service Vulnerability
nvd
CVE-2020-0785P4HIGHCVSS 7.1vr22020-03-12
CVE-2020-0785 [HIGH] CWE-269 CVE-2020-0785: An elevation of privilege vulnerability exists when the Windows User Profile Service (ProfSvc) impro An elevation of privilege vulnerability exists when the Windows User Profile Service (ProfSvc) improperly handles symlinks, aka 'Windows User Profile Service Elevation of Privilege Vulnerability'.
nvd
CVE-2017-8562P4HIGHCVSS 7.0vr22017-07-11
CVE-2017-8562 [HIGH] CWE-281 CVE-2017-8562: Microsoft Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, a Microsoft Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows an elevation of privilege vulnerability due to Windows improperly handling calls to Advanced Local Procedure Call (ALPC), aka "Windows ALPC Elevation of Privilege Vulnerability".
nvd
CVE-2026-40401P4HIGHCVSS 7.1vr2≥ 6.2.9200.0, < 6.2.9200.260792026-05-12
CVE-2026-40401 [HIGH] CWE-476 CVE-2026-40401: Null pointer dereference in Windows TCP/IP allows an unauthorized attacker to deny service locally. Null pointer dereference in Windows TCP/IP allows an unauthorized attacker to deny service locally.
cvelistv5nvd
CVE-2022-35759P4MEDIUMCVSS 6.5vr2≥ 6.2.9200.0, < 6.2.9200.238172023-05-31
CVE-2022-35759 [MEDIUM] CVE-2022-35759: Windows Local Security Authority (LSA) Denial of Service Vulnerability Windows Local Security Authority (LSA) Denial of Service Vulnerability
nvd
CVE-2023-35321P4MEDIUMCVSS 6.5vr2≥ 6.2.9200.0, < 6.2.9200.243742023-07-11
CVE-2023-35321 [MEDIUM] CWE-170 CVE-2023-35321: Windows Deployment Services Denial of Service Vulnerability Windows Deployment Services Denial of Service Vulnerability
nvd
CVE-2022-21960P4MEDIUMCVSS 6.8vr2≥ 6.2.9200.0, < 6.2.9200.235842022-01-11
CVE-2022-21960 [MEDIUM] CVE-2022-21960: Windows Resilient File System (ReFS) Remote Code Execution Vulnerability Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
nvd
CVE-2022-21959P4MEDIUMCVSS 6.8vr2≥ 6.2.9200.0, < 6.2.9200.235842022-01-11
CVE-2022-21959 [MEDIUM] CVE-2022-21959: Windows Resilient File System (ReFS) Remote Code Execution Vulnerability Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
nvd
CVE-2022-21892P4MEDIUMCVSS 6.8vr2≥ 6.2.9200.0, < 6.2.9200.235842022-01-11
CVE-2022-21892 [MEDIUM] CVE-2022-21892: Windows Resilient File System (ReFS) Remote Code Execution Vulnerability Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
nvd
CVE-2022-21958P4MEDIUMCVSS 6.8vr2≥ 6.2.9200.0, < 6.2.9200.235842022-01-11
CVE-2022-21958 [MEDIUM] CVE-2022-21958: Windows Resilient File System (ReFS) Remote Code Execution Vulnerability Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
nvd
CVE-2022-21961P4MEDIUMCVSS 6.8vr2≥ 6.2.9200.0, < 6.2.9200.235842022-01-11
CVE-2022-21961 [MEDIUM] CVE-2022-21961: Windows Resilient File System (ReFS) Remote Code Execution Vulnerability Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
nvd
CVE-2022-21962P4MEDIUMCVSS 6.8vr2≥ 6.2.9200.0, < 6.2.9200.235842022-01-11
CVE-2022-21962 [MEDIUM] CVE-2022-21962: Windows Resilient File System (ReFS) Remote Code Execution Vulnerability Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
nvd
CVE-2024-43634P4MEDIUMCVSS 6.8vr2≥ 6.2.9200.0, < 6.2.9200.251652024-11-12
CVE-2024-43634 [MEDIUM] CWE-125 CVE-2024-43634: Windows USB Video Class System Driver Elevation of Privilege Vulnerability Windows USB Video Class System Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-43449P4MEDIUMCVSS 6.8vr2≥ 6.2.9200.0, < 6.2.9200.251652024-11-12
CVE-2024-43449 [MEDIUM] CWE-125 CVE-2024-43449: Windows USB Video Class System Driver Elevation of Privilege Vulnerability Windows USB Video Class System Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-43637P4MEDIUMCVSS 6.8vr2≥ 6.2.9200.0, < 6.2.9200.251652024-11-12
CVE-2024-43637 [MEDIUM] CWE-125 CVE-2024-43637: Windows USB Video Class System Driver Elevation of Privilege Vulnerability Windows USB Video Class System Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-43638P4MEDIUMCVSS 6.8vr2≥ 6.2.9200.0, < 6.2.9200.251652024-11-12
CVE-2024-43638 [MEDIUM] CWE-125 CVE-2024-43638: Windows USB Video Class System Driver Elevation of Privilege Vulnerability Windows USB Video Class System Driver Elevation of Privilege Vulnerability
nvd
Microsoft Windows Server 2012 vulnerabilities | cvebase