Microsoft Windows Server 2012 vulnerabilities

3,707 known vulnerabilities affecting microsoft/windows_server_2012.

Total CVEs
3,707
CISA KEV
148
actively exploited
Public exploits
290
Exploited in wild
141
Severity breakdown
CRITICAL157HIGH2452MEDIUM1046LOW52

Vulnerabilities

Page 31 of 186
CVE-2025-21215MEDIUMCVSS 4.6≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21215 [MEDIUM] CWE-125 Secure Boot Security Feature Bypass Vulnerability Secure Boot Security Feature Bypass Vulnerability Secure Boot Security Feature Bypass Vulnerability
cvelistv5
CVE-2025-21269MEDIUMCVSS 4.3vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21269 [MEDIUM] CWE-41 CVE-2025-21269: Windows HTML Platforms Security Feature Bypass Vulnerability Windows HTML Platforms Security Feature Bypass Vulnerability
nvd
CVE-2025-21211MEDIUMCVSS 6.8≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21211 [MEDIUM] CWE-693 Secure Boot Security Feature Bypass Vulnerability Secure Boot Security Feature Bypass Vulnerability Secure Boot Security Feature Bypass Vulnerability
cvelistv5
CVE-2025-21316MEDIUMCVSS 5.5vr22025-01-14
CVE-2025-21316 [MEDIUM] CWE-532 CVE-2025-21316: Windows Kernel Memory Information Disclosure Vulnerability Windows Kernel Memory Information Disclosure Vulnerability
nvd
CVE-2025-21265MEDIUMCVSS 6.6vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21265 [MEDIUM] CWE-125 CVE-2025-21265: Windows Digital Media Elevation of Privilege Vulnerability Windows Digital Media Elevation of Privilege Vulnerability
nvd
CVE-2025-21210MEDIUMCVSS 4.2vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21210 [MEDIUM] CWE-636 CVE-2025-21210: Windows BitLocker Information Disclosure Vulnerability Windows BitLocker Information Disclosure Vulnerability
nvd
CVE-2025-21261MEDIUMCVSS 6.6vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21261 [MEDIUM] CWE-125 CVE-2025-21261: Windows Digital Media Elevation of Privilege Vulnerability Windows Digital Media Elevation of Privilege Vulnerability
nvd
CVE-2025-21268MEDIUMCVSS 4.3vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21268 [MEDIUM] CWE-41 CVE-2025-21268: MapUrlToZone Security Feature Bypass Vulnerability MapUrlToZone Security Feature Bypass Vulnerability
nvd
CVE-2025-21217MEDIUMCVSS 6.5≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21217 [MEDIUM] CWE-693 Windows NTLM Spoofing Vulnerability Windows NTLM Spoofing Vulnerability Windows NTLM Spoofing Vulnerability
cvelistv5
CVE-2025-21310MEDIUMCVSS 6.6vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21310 [MEDIUM] CWE-125 CVE-2025-21310: Windows Digital Media Elevation of Privilege Vulnerability Windows Digital Media Elevation of Privilege Vulnerability
nvd
CVE-2025-21226MEDIUMCVSS 6.6vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21226 [MEDIUM] CWE-125 CVE-2025-21226: Windows Digital Media Elevation of Privilege Vulnerability Windows Digital Media Elevation of Privilege Vulnerability
nvd
CVE-2025-21288MEDIUMCVSS 6.5vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21288 [MEDIUM] CWE-908 CVE-2025-21288: Windows COM Server Information Disclosure Vulnerability Windows COM Server Information Disclosure Vulnerability
nvd
CVE-2025-21312LOWCVSS 2.4vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21312 [LOW] CWE-908 CVE-2025-21312: Windows Smart Card Reader Information Disclosure Vulnerability Windows Smart Card Reader Information Disclosure Vulnerability
nvd
CVE-2024-49112CRITICALCVSS 9.8vr2≥ 6.2.9200.0, < 6.2.9200.252222024-12-12
CVE-2024-49112 [CRITICAL] CWE-190 CVE-2024-49112: Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
nvd
CVE-2024-49122HIGHCVSS 8.1vr2≥ 6.2.9200.0, < 6.2.9200.252222024-12-12
CVE-2024-49122 [HIGH] CWE-416 CVE-2024-49122: Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
nvd
CVE-2024-49105HIGHCVSS 8.4vr2≥ 6.2.9200.0, < 6.2.9200.252222024-12-12
CVE-2024-49105 [HIGH] CWE-284 CVE-2024-49105: Remote Desktop Client Remote Code Execution Vulnerability Remote Desktop Client Remote Code Execution Vulnerability
nvd
CVE-2024-49128HIGHCVSS 8.1vr2≥ 6.2.9200.0, < 6.2.9200.254752024-12-12
CVE-2024-49128 [HIGH] CWE-416 CVE-2024-49128: Sensitive data storage in improperly locked memory in Windows Remote Desktop Services allows an unau Sensitive data storage in improperly locked memory in Windows Remote Desktop Services allows an unauthorized attacker to execute code over a network.
nvd
CVE-2024-49080HIGHCVSS 8.8vr2≥ 6.2.9200.0, < 6.2.9200.252222024-12-12
CVE-2024-49080 [HIGH] CWE-122 CVE-2024-49080: Windows IP Routing Management Snapin Remote Code Execution Vulnerability Windows IP Routing Management Snapin Remote Code Execution Vulnerability
nvd
CVE-2024-49088HIGHCVSS 7.8vr2≥ 6.2.9200.0, < 6.2.9200.252222024-12-12
CVE-2024-49088 [HIGH] CWE-126 CVE-2024-49088: Windows Common Log File System Driver Elevation of Privilege Vulnerability Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-49090HIGHCVSS 7.8vr2≥ 6.2.9200.0, < 6.2.9200.252222024-12-12
CVE-2024-49090 [HIGH] CWE-822 CVE-2024-49090: Windows Common Log File System Driver Elevation of Privilege Vulnerability Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd