cbcvebase.

Microsoft Windows Server 2012 vulnerabilities

4,005 known vulnerabilities affecting microsoft/windows_server_2012.

Total CVEs
4,005
CISA KEV
150
actively exploited
Public exploits
332
Exploited in wild
207
Severity breakdown
CRITICAL178HIGH2668MEDIUM1104LOW55

Vulnerabilities

Page 166 of 201
CVE-2019-1096P4MEDIUMCVSS 5.5vr22019-07-15
CVE-2019-1096 [MEDIUM] CWE-200 CVE-2019-1096: An information disclosure vulnerability exists when the win32k component improperly provides kernel An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Win32k Information Disclosure Vulnerability'.
nvd
CVE-2026-24297P4MEDIUMCVSS 4.8vr2≥ 6.2.9200.0, < 6.2.9200.259732026-03-10
CVE-2026-24297 [MEDIUM] CWE-362 CVE-2026-24297: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Kerberos allows an unauthorized attacker to bypass a security feature over a network.
nvd
CVE-2023-35377P4MEDIUMCVSS 6.5vr2≥ 6.2.9200.0, < 6.2.9200.244142023-08-08
CVE-2023-35377 [MEDIUM] CWE-20 CVE-2023-35377: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2023-35376P4MEDIUMCVSS 6.5vr2≥ 6.2.9200.0, < 6.2.9200.244142023-08-08
CVE-2023-35376 [MEDIUM] CWE-20 CVE-2023-35376: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2023-28266P4MEDIUMCVSS 5.5vr2≥ 6.2.9200.0, < 6.2.9200.242162023-04-11
CVE-2023-28266 [MEDIUM] CWE-126 CVE-2023-28266: Windows Common Log File System Driver Information Disclosure Vulnerability Windows Common Log File System Driver Information Disclosure Vulnerability
nvd
CVE-2023-36909P4MEDIUMCVSS 6.5vr2≥ 6.2.9200.0, < 6.2.9200.244142023-08-08
CVE-2023-36909 [MEDIUM] CWE-191 CVE-2023-36909: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2020-1071P4MEDIUMCVSS 6.8vr22020-05-21
CVE-2020-1071 [MEDIUM] CWE-755 CVE-2020-1071: An elevation of privilege vulnerability exists when Windows improperly handles errors tied to Remote An elevation of privilege vulnerability exists when Windows improperly handles errors tied to Remote Access Common Dialog, aka 'Windows Remote Access Common Dialog Elevation of Privilege Vulnerability'.
nvd
CVE-2020-1333P4MEDIUMCVSS 6.7vr22020-07-14
CVE-2020-1333 [MEDIUM] CVE-2020-1333: An elevation of privilege vulnerability exists when Group Policy Services Policy Processing improper An elevation of privilege vulnerability exists when Group Policy Services Policy Processing improperly handle reparse points, aka 'Group Policy Services Policy Processing Elevation of Privilege Vulnerability'.
nvd
CVE-2020-1310P4MEDIUMCVSS 6.7vr22020-06-09
CVE-2020-1310 [MEDIUM] CVE-2020-1310: An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1207, CVE-2020-1247, CVE-2020-1251, CVE-2020-1253.
nvd
CVE-2020-1253P4MEDIUMCVSS 6.7vr22020-06-09
CVE-2020-1253 [MEDIUM] CVE-2020-1253: An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1207, CVE-2020-1247, CVE-2020-1251, CVE-2020-1310.
nvd
CVE-2021-43224P4MEDIUMCVSS 5.5vr2≥ 6.2.0, < 6.2.9200.23545+1 more2021-12-15
CVE-2021-43224 [MEDIUM] CVE-2021-43224: Windows Common Log File System Driver Information Disclosure Vulnerability Windows Common Log File System Driver Information Disclosure Vulnerability
nvd
CVE-2020-1251P4MEDIUMCVSS 6.7vr22020-06-09
CVE-2020-1251 [MEDIUM] CVE-2020-1251: An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1207, CVE-2020-1247, CVE-2020-1253, CVE-2020-1310.
nvd
CVE-2017-8677P4MEDIUMCVSS 5.5vr22017-09-13
CVE-2017-8677 [MEDIUM] CWE-200 CVE-2017-8677: The Windows GDI+ component on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8 The Windows GDI+ component on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows an information disclosure vulnerability when it improperly discloses kernel memory addresses, aka "Win32k Information Disclosure V
nvd
CVE-2017-8679P4MEDIUMCVSS 5.5vr22017-09-13
CVE-2017-8679 [MEDIUM] CWE-200 CVE-2017-8679: The Windows kernel component on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows The Windows kernel component on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows an information disclosure vulnerability when it improperly handles objects in memory, aka "Windows Kernel Information Disclosure
nvd
CVE-2025-21226P4MEDIUMCVSS 6.6vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21226 [MEDIUM] CWE-125 CVE-2025-21226: Windows Digital Media Elevation of Privilege Vulnerability Windows Digital Media Elevation of Privilege Vulnerability
nvd
CVE-2025-21260P4MEDIUMCVSS 6.6vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21260 [MEDIUM] CWE-125 CVE-2025-21260: Windows Digital Media Elevation of Privilege Vulnerability Windows Digital Media Elevation of Privilege Vulnerability
nvd
CVE-2025-21256P4MEDIUMCVSS 6.6vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21256 [MEDIUM] CWE-122 CVE-2025-21256: Windows Digital Media Elevation of Privilege Vulnerability Windows Digital Media Elevation of Privilege Vulnerability
nvd
CVE-2025-21249P4MEDIUMCVSS 6.6vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21249 [MEDIUM] CWE-125 CVE-2025-21249: Windows Digital Media Elevation of Privilege Vulnerability Windows Digital Media Elevation of Privilege Vulnerability
nvd
CVE-2025-21228P4MEDIUMCVSS 6.6vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21228 [MEDIUM] CWE-125 CVE-2025-21228: Windows Digital Media Elevation of Privilege Vulnerability Windows Digital Media Elevation of Privilege Vulnerability
nvd
CVE-2025-21258P4MEDIUMCVSS 6.6vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21258 [MEDIUM] CWE-125 CVE-2025-21258: Windows Digital Media Elevation of Privilege Vulnerability Windows Digital Media Elevation of Privilege Vulnerability
nvd
Microsoft Windows Server 2012 vulnerabilities | cvebase