cbcvebase.

Microsoft Windows Server 2012 vulnerabilities

4,005 known vulnerabilities affecting microsoft/windows_server_2012.

Total CVEs
4,005
CISA KEV
150
actively exploited
Public exploits
332
Exploited in wild
207
Severity breakdown
CRITICAL178HIGH2668MEDIUM1104LOW55

Vulnerabilities

Page 183 of 201
CVE-2024-29056P4MEDIUMCVSS 4.3vr2≥ 6.2.9200.0, < 6.2.9200.248212024-04-09
CVE-2024-29056 [MEDIUM] CWE-327 CVE-2024-29056: Windows Authentication Elevation of Privilege Vulnerability Windows Authentication Elevation of Privilege Vulnerability
nvd
CVE-2026-32209P4MEDIUMCVSS 4.4vr2≥ 6.2.9200.0, < 6.2.9200.260792026-05-12
CVE-2026-32209 [MEDIUM] CWE-284 CVE-2026-32209: Improper access control in Windows Filtering Platform (WFP) allows an authorized attacker to bypass Improper access control in Windows Filtering Platform (WFP) allows an authorized attacker to bypass a security feature locally.
nvd
CVE-2024-38234P4MEDIUMCVSS 6.5vr2≥ 6.2.9200.0, < 6.2.9200.250732024-09-10
CVE-2024-38234 [MEDIUM] CWE-20 CVE-2024-38234: Windows Networking Denial of Service Vulnerability Windows Networking Denial of Service Vulnerability
nvd
CVE-2017-8676P4LOWCVSS 3.3vr22017-09-13
CVE-2017-8676 [LOW] CWE-200 CVE-2017-8676: The Windows Graphics Device Interface (GDI) in Microsoft Windows Server 2008 SP2 and R2 SP1; Windows The Windows Graphics Device Interface (GDI) in Microsoft Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; Windows 10 Gold, 1511, 1607, 1703, and Server 2016; Office 2007 SP3; Office 2010 SP2; Word Viewer; Office for Mac 2011 and 2016; Skype for Business 2016; Lync 2013 SP1; Lync 2010; Lync 2
nvd
CVE-2025-21347P4MEDIUMCVSS 6.0vr2≥ 6.2.9200.0, < 6.2.9200.253172025-02-11
CVE-2025-21347 [MEDIUM] CWE-59 CVE-2025-21347: Windows Deployment Services Denial of Service Vulnerability Windows Deployment Services Denial of Service Vulnerability
nvd
CVE-2018-8309P4MEDIUMCVSS 5.5vr2v(Server Core installation)2018-07-11
CVE-2018-8309 [MEDIUM] CVE-2018-8309: A denial of service vulnerability exists when Windows improperly handles objects in memory, aka "Win A denial of service vulnerability exists when Windows improperly handles objects in memory, aka "Windows Denial of Service Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Windows 10, Windows 10 Servers.
nvd
CVE-2018-8205P4MEDIUMCVSS 5.5vr2v(Server Core installation)2018-06-14
CVE-2018-8205 [MEDIUM] CVE-2018-8205: A denial of service vulnerability exists when Windows improperly handles objects in memory, aka "Win A denial of service vulnerability exists when Windows improperly handles objects in memory, aka "Windows Denial of Service Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Windows 10, Windows 10 Servers.
nvd
CVE-2019-1325P4MEDIUMCVSS 5.5vr22019-10-10
CVE-2019-1325 [MEDIUM] CVE-2019-1325: An elevation of privilege vulnerability exists in the Windows redirected drive buffering system (rdb An elevation of privilege vulnerability exists in the Windows redirected drive buffering system (rdbss.sys) when the operating system improperly handles specific local calls within Windows 7 for 32-bit systems, aka 'Windows Redirected Drive Buffering System Elevation of Privilege Vulnerability'.
nvd
CVE-2022-34708P4MEDIUMCVSS 5.5vr2≥ 6.2.9200.0, < 6.2.9200.238172022-08-09
CVE-2022-34708 [MEDIUM] CWE-200 CVE-2022-34708: Windows Kernel Information Disclosure Vulnerability Windows Kernel Information Disclosure Vulnerability
nvd
CVE-2017-0178P4MEDIUMCVSS 5.4vr22017-04-12
CVE-2017-0178 [MEDIUM] CWE-20 CVE-2017-0178: A denial of service vulnerability exists when Microsoft Hyper-V running on Windows 10, Windows 10 15 A denial of service vulnerability exists when Microsoft Hyper-V running on Windows 10, Windows 10 1511, Windows 10 1607, Windows 8.1, Windows Server 2012 R2, and Windows Server 2016 host server fails to properly validate input from a privileged user on a guest operating system, aka "Hyper-V Denial of Service Vulnerability." This CVE ID is unique from C
nvd
CVE-2020-17036P4MEDIUMCVSS 5.5vr2≥ 6.2.0, < publication2020-11-11
CVE-2020-17036 [MEDIUM] CVE-2020-17036: Windows Function Discovery SSDP Provider Information Disclosure Vulnerability Windows Function Discovery SSDP Provider Information Disclosure Vulnerability
nvd
CVE-2017-0076P4MEDIUMCVSS 5.4vr22017-03-17
CVE-2017-0076 [MEDIUM] CVE-2017-0076: Hyper-V in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and 2008 R2; Windows 7 SP1; Windows Hyper-V in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and 2008 R2; Windows 7 SP1; Windows 8.1; Windows Server 2012 and R2; Windows 10, 1511, and 1607; and Windows Server 2016 allows guest OS users, running as virtual machines, to cause a denial of service via a crafted application, aka "Hyper-V Denial of Service Vulnerability." This vulnerability is
nvd
CVE-2020-1016P4MEDIUMCVSS 5.5vr22020-04-15
CVE-2020-1016 [MEDIUM] CVE-2020-1016: An information disclosure vulnerability exists when the Windows Push Notification Service improperly An information disclosure vulnerability exists when the Windows Push Notification Service improperly handles objects in memory, aka 'Windows Push Notification Service Information Disclosure Vulnerability'.
nvd
CVE-2022-30223P4MEDIUMCVSS 5.7vr2≥ 6.2.9200.0, < 6.2.9200.237712022-07-12
CVE-2022-30223 [MEDIUM] CVE-2022-30223: Windows Hyper-V Information Disclosure Vulnerability Windows Hyper-V Information Disclosure Vulnerability
nvd
CVE-2020-1007P4MEDIUMCVSS 5.5vr22020-04-15
CVE-2020-1007 [MEDIUM] CVE-2020-1007: An information disclosure vulnerability exists when the Windows kernel improperly handles objects in An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-0821.
nvd
CVE-2020-17004P4MEDIUMCVSS 5.5vr2≥ 6.2.0, < publication2020-11-11
CVE-2020-17004 [MEDIUM] CVE-2020-17004: Windows Graphics Component Information Disclosure Vulnerability Windows Graphics Component Information Disclosure Vulnerability
nvd
CVE-2022-29114P4MEDIUMCVSS 5.5vr2≥ 6.2.9200.0, < 6.2.9200.237142022-05-10
CVE-2022-29114 [MEDIUM] CVE-2022-29114: Windows Print Spooler Information Disclosure Vulnerability Windows Print Spooler Information Disclosure Vulnerability
nvd
CVE-2020-1038P4MEDIUMCVSS 5.5vr2≥ 6.2.0, < publication2020-09-11
CVE-2020-1038 [MEDIUM] CVE-2020-1038: <p>A denial of service vulnerability exists when Windows Routing Utilities improperly handles object A denial of service vulnerability exists when Windows Routing Utilities improperly handles objects in memory. An attacker who successfully exploited the vulnerability could cause a target system to stop responding. To exploit this vulnerability, an attacker would have to log on to an affected system and run a specially crafted application. The vulnerability w
nvd
CVE-2024-26177P4MEDIUMCVSS 5.5vr2≥ 6.2.9200.0, < 6.2.9200.247682024-03-12
CVE-2024-26177 [MEDIUM] CWE-200 CVE-2024-26177: Windows Kernel Information Disclosure Vulnerability Windows Kernel Information Disclosure Vulnerability
nvd
CVE-2024-26174P4MEDIUMCVSS 5.5fixed in 6.2.9200.24768vr2+1 more2024-03-12
CVE-2024-26174 [MEDIUM] CWE-125 CVE-2024-26174: Windows Kernel Information Disclosure Vulnerability Windows Kernel Information Disclosure Vulnerability
nvd
Microsoft Windows Server 2012 vulnerabilities | cvebase