Microsoft Windows Server 2012 vulnerabilities
3,709 known vulnerabilities affecting microsoft/windows_server_2012.
Total CVEs
3,709
CISA KEV
148
actively exploited
Public exploits
290
Exploited in wild
142
Severity breakdown
CRITICAL157HIGH2452MEDIUM1048LOW52
Vulnerabilities
Page 27 of 186
CVE-2025-21298CRITICALCVSS 9.8≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21298 [CRITICAL] CWE-416 Windows OLE Remote Code Execution Vulnerability
Windows OLE Remote Code Execution Vulnerability
Windows OLE Remote Code Execution Vulnerability
cvelistv5
CVE-2025-21223HIGHCVSS 8.8vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21223 [HIGH] CWE-122 CVE-2025-21223: Windows Telephony Service Remote Code Execution Vulnerability
Windows Telephony Service Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2025-21246HIGHCVSS 8.8vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21246 [HIGH] CWE-122 CVE-2025-21246: Windows Telephony Service Remote Code Execution Vulnerability
Windows Telephony Service Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2025-21287HIGHCVSS 7.8vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21287 [HIGH] CWE-269 CVE-2025-21287: Windows Installer Elevation of Privilege Vulnerability
Windows Installer Elevation of Privilege Vulnerability
cvelistv5nvd
CVE-2025-21293HIGHCVSS 8.8PoCvr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21293 [HIGH] CWE-284 CVE-2025-21293: Active Directory Domain Services Elevation of Privilege Vulnerability
Active Directory Domain Services Elevation of Privilege Vulnerability
cvelistv5nvd
CVE-2025-21378HIGHCVSS 7.8vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21378 [HIGH] CWE-122 CVE-2025-21378: Windows CSC Service Elevation of Privilege Vulnerability
Windows CSC Service Elevation of Privilege Vulnerability
cvelistv5nvd
CVE-2025-21285HIGHCVSS 7.5vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21285 [HIGH] CWE-476 CVE-2025-21285: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
cvelistv5nvd
CVE-2025-21297HIGHCVSS 8.1vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21297 [HIGH] CWE-416 CVE-2025-21297: Windows Remote Desktop Services Remote Code Execution Vulnerability
Windows Remote Desktop Services Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2025-21289HIGHCVSS 7.5vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21289 [HIGH] CWE-400 CVE-2025-21289: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
cvelistv5nvd
CVE-2025-21300HIGHCVSS 7.5vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21300 [HIGH] CWE-400 CVE-2025-21300: Windows Universal Plug and Play (UPnP) Device Host Denial of Service Vulnerability
Windows Universal Plug and Play (UPnP) Device Host Denial of Service Vulnerability
cvelistv5nvd
CVE-2025-21409HIGHCVSS 8.8vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21409 [HIGH] CWE-122 CVE-2025-21409: Windows Telephony Service Remote Code Execution Vulnerability
Windows Telephony Service Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2025-21339HIGHCVSS 8.8vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21339 [HIGH] CWE-122 CVE-2025-21339: Windows Telephony Service Remote Code Execution Vulnerability
Windows Telephony Service Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2025-21417HIGHCVSS 8.8vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21417 [HIGH] CWE-122 CVE-2025-21417: Windows Telephony Service Remote Code Execution Vulnerability
Windows Telephony Service Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2025-21281HIGHCVSS 7.8vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21281 [HIGH] CWE-416 CVE-2025-21281: Microsoft COM for Windows Elevation of Privilege Vulnerability
Microsoft COM for Windows Elevation of Privilege Vulnerability
cvelistv5nvd
CVE-2025-21286HIGHCVSS 8.8vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21286 [HIGH] CWE-122 CVE-2025-21286: Windows Telephony Service Remote Code Execution Vulnerability
Windows Telephony Service Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2025-21303HIGHCVSS 8.8vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21303 [HIGH] CWE-122 CVE-2025-21303: Windows Telephony Service Remote Code Execution Vulnerability
Windows Telephony Service Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2025-21244HIGHCVSS 8.8vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21244 [HIGH] CWE-190 CVE-2025-21244: Windows Telephony Service Remote Code Execution Vulnerability
Windows Telephony Service Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2025-21250HIGHCVSS 8.8vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21250 [HIGH] CWE-122 CVE-2025-21250: Windows Telephony Service Remote Code Execution Vulnerability
Windows Telephony Service Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2025-21295HIGHCVSS 8.1vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21295 [HIGH] CWE-416 CVE-2025-21295: SPNEGO Extended Negotiation (NEGOEX) Security Mechanism Remote Code Execution Vulnerability
SPNEGO Extended Negotiation (NEGOEX) Security Mechanism Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2025-21389HIGHCVSS 7.5vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21389 [HIGH] CWE-400 CVE-2025-21389: Uncontrolled resource consumption in Windows Universal Plug and Play (UPnP) Device Host allows an un
Uncontrolled resource consumption in Windows Universal Plug and Play (UPnP) Device Host allows an unauthorized attacker to deny service over a network.
cvelistv5nvd