Microsoft Windows Server 2012 vulnerabilities
3,709 known vulnerabilities affecting microsoft/windows_server_2012.
Total CVEs
3,709
CISA KEV
148
actively exploited
Public exploits
269
Exploited in wild
142
Severity breakdown
CRITICAL157HIGH2452MEDIUM1048LOW52
Vulnerabilities
Page 3 of 186
CVE-2026-33827HIGHCVSS 8.1≥ 6.2.9200.0, < 6.2.9200.260262026-04-14
CVE-2026-33827 [HIGH] CWE-362 CVE-2026-33827: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows TCP/IP allows an unauthorized attacker to execute code over a network.
cvelistv5nvd
CVE-2026-27922HIGHCVSS 7.0≥ 6.2.9200.0, < 6.2.9200.260262026-04-14
CVE-2026-27922 [HIGH] CWE-416 CVE-2026-27922: Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to ele
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
cvelistv5nvd
CVE-2026-26159HIGHCVSS 7.8≥ 6.2.9200.0, < 6.2.9200.260262026-04-14
CVE-2026-26159 [HIGH] CWE-306 CVE-2026-26159: Missing authentication for critical function in Windows Remote Desktop Licensing Service allows an a
Missing authentication for critical function in Windows Remote Desktop Licensing Service allows an authorized attacker to elevate privileges locally.
cvelistv5nvd
CVE-2026-27913HIGHCVSS 7.7≥ 6.2.9200.0, < 6.2.9200.260262026-04-14
CVE-2026-27913 [HIGH] CWE-20 CVE-2026-27913: Improper input validation in Windows BitLocker allows an unauthorized attacker to bypass a security
Improper input validation in Windows BitLocker allows an unauthorized attacker to bypass a security feature locally.
cvelistv5nvd
CVE-2026-32077HIGHCVSS 7.8≥ 6.2.9200.0, < 6.2.9200.260262026-04-14
CVE-2026-32077 [HIGH] CWE-822 CVE-2026-32077: Untrusted pointer dereference in Windows Universal Plug and Play (UPnP) Device Host allows an author
Untrusted pointer dereference in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to elevate privileges locally.
cvelistv5nvd
CVE-2026-26182HIGHCVSS 7.0≥ 6.2.9200.0, < 6.2.9200.260262026-04-14
CVE-2026-26182 [HIGH] CWE-416 CVE-2026-26182: Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to ele
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
cvelistv5nvd
CVE-2026-27908HIGHCVSS 7.0≥ 6.2.9200.0, < 6.2.9200.260262026-04-14
CVE-2026-27908 [HIGH] CWE-416 CVE-2026-27908: Use after free in Windows TDI Translation Driver (tdx.sys) allows an authorized attacker to elevate
Use after free in Windows TDI Translation Driver (tdx.sys) allows an authorized attacker to elevate privileges locally.
cvelistv5nvd
CVE-2026-32202MEDIUMCVSS 4.3≥ 6.2.9200.0, < 6.2.9200.260262026-04-14
CVE-2026-32202 [MEDIUM] CWE-693 CVE-2026-32202: Protection mechanism failure in Windows Shell allows an unauthorized attacker to perform spoofing ov
Protection mechanism failure in Windows Shell allows an unauthorized attacker to perform spoofing over a network.
cvelistv5nvd
CVE-2026-27925MEDIUMCVSS 6.5≥ 6.2.9200.0, < 6.2.9200.260262026-04-14
CVE-2026-27925 [MEDIUM] CWE-416 CVE-2026-27925: Use after free in Windows Universal Plug and Play (UPnP) Device Host allows an unauthorized attacker
Use after free in Windows Universal Plug and Play (UPnP) Device Host allows an unauthorized attacker to disclose information over an adjacent network.
cvelistv5nvd
CVE-2026-32214MEDIUMCVSS 5.5≥ 6.2.9200.0, < 6.2.9200.260262026-04-14
CVE-2026-32214 [MEDIUM] CWE-284 CVE-2026-32214: Improper access control in Universal Plug and Play (upnp.dll) allows an authorized attacker to discl
Improper access control in Universal Plug and Play (upnp.dll) allows an authorized attacker to disclose information locally.
cvelistv5nvd
CVE-2026-32212MEDIUMCVSS 5.5≥ 6.2.9200.0, < 6.2.9200.260262026-04-14
CVE-2026-32212 [MEDIUM] CWE-59 CVE-2026-32212: Improper link resolution before file access ('link following') in Universal Plug and Play (upnp.dll)
Improper link resolution before file access ('link following') in Universal Plug and Play (upnp.dll) allows an authorized attacker to disclose information locally.
cvelistv5nvd
CVE-2026-32217MEDIUMCVSS 5.5≥ 6.2.9200.0, < 6.2.9200.260262026-04-14
CVE-2026-32217 [MEDIUM] CWE-532 CVE-2026-32217: Insertion of sensitive information into log file in Windows Kernel allows an authorized attacker to
Insertion of sensitive information into log file in Windows Kernel allows an authorized attacker to disclose information locally.
cvelistv5nvd
CVE-2026-27930MEDIUMCVSS 5.5≥ 6.2.9200.0, < 6.2.9200.260262026-04-14
CVE-2026-27930 [MEDIUM] CWE-125 CVE-2026-27930: Out-of-bounds read in Windows GDI allows an unauthorized attacker to disclose information locally.
Out-of-bounds read in Windows GDI allows an unauthorized attacker to disclose information locally.
cvelistv5nvd
CVE-2026-32151MEDIUMCVSS 6.5≥ 6.2.9200.0, < 6.2.9200.260262026-04-14
CVE-2026-32151 [MEDIUM] CWE-200 CVE-2026-32151: Exposure of sensitive information to an unauthorized actor in Windows Shell allows an authorized att
Exposure of sensitive information to an unauthorized actor in Windows Shell allows an authorized attacker to disclose information over a network.
cvelistv5nvd
CVE-2026-33829MEDIUMCVSS 4.3≥ 6.2.9200.0, < 6.2.9200.260262026-04-14
CVE-2026-33829 [MEDIUM] CWE-200 CVE-2026-33829: Exposure of sensitive information to an unauthorized actor in Windows Snipping Tool allows an unauth
Exposure of sensitive information to an unauthorized actor in Windows Snipping Tool allows an unauthorized attacker to perform spoofing over a network.
cvelistv5nvd
CVE-2026-32084MEDIUMCVSS 5.5≥ 6.2.9200.0, < 6.2.9200.260262026-04-14
CVE-2026-32084 [MEDIUM] CWE-200 CVE-2026-32084: Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an author
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.
cvelistv5nvd
CVE-2026-25171HIGHCVSS 7.0vr2≥ 6.2.9200.0, < 6.2.9200.259732026-03-10
CVE-2026-25171 [HIGH] CWE-416 CVE-2026-25171: Use after free in Windows Authentication Methods allows an authorized attacker to elevate privileges
Use after free in Windows Authentication Methods allows an authorized attacker to elevate privileges locally.
cvelistv5nvd
CVE-2026-25165HIGHCVSS 7.8vr2≥ 6.2.9200.0, < 6.2.9200.259732026-03-10
CVE-2026-25165 [HIGH] CWE-476 CVE-2026-25165: Null pointer dereference in Windows Performance Counters allows an authorized attacker to elevate pr
Null pointer dereference in Windows Performance Counters allows an authorized attacker to elevate privileges locally.
cvelistv5nvd
CVE-2026-23673HIGHCVSS 7.8vr2≥ 6.2.9200.0, < 6.2.9200.259732026-03-10
CVE-2026-23673 [HIGH] CWE-125 CVE-2026-23673: Out-of-bounds read in Windows Resilient File System (ReFS) allows an authorized attacker to elevate
Out-of-bounds read in Windows Resilient File System (ReFS) allows an authorized attacker to elevate privileges locally.
cvelistv5nvd
CVE-2026-25190HIGHCVSS 7.8vr2≥ 6.2.9200.0, < 6.2.9200.259732026-03-10
CVE-2026-25190 [HIGH] CWE-426 CVE-2026-25190: Untrusted search path in Windows GDI allows an unauthorized attacker to execute code locally.
Untrusted search path in Windows GDI allows an unauthorized attacker to execute code locally.
cvelistv5nvd