Microsoft Windows Server 2012 vulnerabilities
4,005 known vulnerabilities affecting microsoft/windows_server_2012.
Total CVEs
4,005
CISA KEV
150
actively exploited
Public exploits
332
Exploited in wild
207
Severity breakdown
CRITICAL178HIGH2668MEDIUM1104LOW55
Vulnerabilities
Page 43 of 201
CVE-2023-24907P3HIGHCVSS 8.8vr2≥ 6.2.9200.0, < 6.2.9200.241682023-03-14
CVE-2023-24907 [HIGH] CWE-122 CVE-2023-24907: Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
nvd
CVE-2023-24872P3HIGHCVSS 8.8vr2≥ 6.2.9200.0, < 6.2.9200.241682023-03-14
CVE-2023-24872 [HIGH] CWE-125 CVE-2023-24872: Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
nvd
CVE-2023-23403P3HIGHCVSS 8.8vr2≥ 6.2.9200.0, < 6.2.9200.241682023-03-14
CVE-2023-23403 [HIGH] CWE-122 CVE-2023-23403: Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
nvd
CVE-2023-24868P3HIGHCVSS 8.8vr2≥ 6.2.9200.0, < 6.2.9200.241682023-03-14
CVE-2023-24868 [HIGH] CWE-122 CVE-2023-24868: Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
nvd
CVE-2023-23406P3HIGHCVSS 8.8vr2≥ 6.2.9200.0, < 6.2.9200.241682023-03-14
CVE-2023-23406 [HIGH] CWE-122 CVE-2023-23406: Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
nvd
CVE-2023-24913P3HIGHCVSS 8.8vr2≥ 6.2.9200.0, < 6.2.9200.241682023-03-14
CVE-2023-24913 [HIGH] CWE-122 CVE-2023-24913: Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
nvd
CVE-2023-21684P3HIGHCVSS 8.8vr2≥ 6.2.9200.0, < 6.2.9200.241162023-02-14
CVE-2023-21684 [HIGH] CWE-191 CVE-2023-21684: Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
nvd
CVE-2025-21286P3HIGHCVSS 8.8vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21286 [HIGH] CWE-122 CVE-2025-21286: Windows Telephony Service Remote Code Execution Vulnerability
Windows Telephony Service Remote Code Execution Vulnerability
nvd
CVE-2025-21266P3HIGHCVSS 8.8vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21266 [HIGH] CWE-122 CVE-2025-21266: Windows Telephony Service Remote Code Execution Vulnerability
Windows Telephony Service Remote Code Execution Vulnerability
nvd
CVE-2025-21273P3HIGHCVSS 8.8vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21273 [HIGH] CWE-122 CVE-2025-21273: Windows Telephony Service Remote Code Execution Vulnerability
Windows Telephony Service Remote Code Execution Vulnerability
nvd
CVE-2025-21282P3HIGHCVSS 8.8vr2≥ 6.2.9200.0, < 6.2.9200.252732025-01-14
CVE-2025-21282 [HIGH] CWE-122 CVE-2025-21282: Windows Telephony Service Remote Code Execution Vulnerability
Windows Telephony Service Remote Code Execution Vulnerability
nvd
CVE-2018-0825P3HIGHCVSS 7.5vr22018-02-15
CVE-2018-0825 [HIGH] CVE-2018-0825: StructuredQuery in Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2008 SP2 and R2 SP1, Window
StructuredQuery in Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2008 SP2 and R2 SP1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703 and 1709, Windows Server 2016 and Windows Server, version 1709 allows a remote code execution vulnerability due to how objects are handled in memory, aka "StructuredQuery Remote Code Execution Vulnerability"
nvd
CVE-2025-27481P3HIGHCVSS 8.8vr2≥ 6.2.9200.0, < 6.2.9200.254232025-04-08
CVE-2025-27481 [HIGH] CWE-121 CVE-2025-27481: Stack-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to execute
Stack-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-45602P3CRITICALCVSS 9.1vr2≥ 6.2.9200.0, < 6.2.9200.261322026-06-09
CVE-2026-45602 [CRITICAL] CWE-349 CVE-2026-45602: No cwe for this issue in Windows DHCP Server allows an unauthorized attacker to perform tampering ov
No cwe for this issue in Windows DHCP Server allows an unauthorized attacker to perform tampering over a network.
nvd
CVE-2022-30163P3HIGHCVSS 8.5≥ 6.2.9200.0, < 6.2.9200.237362022-06-15
CVE-2022-30163 [HIGH] CWE-362 CVE-2022-30163: Windows Hyper-V Remote Code Execution Vulnerability
Windows Hyper-V Remote Code Execution Vulnerability
nvd
CVE-2019-0796P4MEDIUMCVSS 5.5PoCvr22019-04-09
CVE-2019-0796 [MEDIUM] CVE-2019-0796: An elevation of privilege vulnerability exists when Windows improperly handles calls to the LUAFV dr
An elevation of privilege vulnerability exists when Windows improperly handles calls to the LUAFV driver (luafv.sys), aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-0730, CVE-2019-0731, CVE-2019-0805, CVE-2019-0836, CVE-2019-0841.
nvd
CVE-2026-32225P3HIGHCVSS 8.8vr2≥ 6.2.9200.0, < 6.2.9200.260262026-04-14
CVE-2026-32225 [HIGH] CWE-693 CVE-2026-32225: Protection mechanism failure in Windows Shell allows an unauthorized attacker to bypass a security f
Protection mechanism failure in Windows Shell allows an unauthorized attacker to bypass a security feature over a network.
nvd
CVE-2026-54982P3HIGHCVSS 8.8vr2≥ 6.2.9200.0, < 6.2.9200.262262026-07-14
CVE-2026-54982 [HIGH] CWE-191 CVE-2026-54982: Integer underflow (wrap or wraparound) in Reliable Multicast Transport Driver (RMCAST) allows an una
Integer underflow (wrap or wraparound) in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over an adjacent network.
nvd
CVE-2025-26663P3HIGHCVSS 8.1vr2≥ 6.2.9200.0, < 6.2.9200.254232025-04-08
CVE-2025-26663 [HIGH] CWE-416 CVE-2025-26663: Use after free in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attack
Use after free in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacker to execute code over a network.
nvd
CVE-2020-1042P3CRITICALCVSS 9.0vr22020-07-14
CVE-2020-1042 [CRITICAL] CVE-2020-1042: A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to pr
A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Hyper-V RemoteFX vGPU Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1032, CVE-2020-1036, CVE-2020-1040, CVE-2020-1041, CVE-2020-1043.
nvd