Microsoft Windows Server 2012 R2 vulnerabilities
2,520 known vulnerabilities affecting microsoft/windows_server_2012_r2.
Total CVEs
2,520
CISA KEV
95
actively exploited
Public exploits
59
Exploited in wild
82
Severity breakdown
CRITICAL85HIGH1779MEDIUM647LOW9
Vulnerabilities
Page 100 of 126
CVE-2021-34537HIGHCVSS 8.0≥ 6.3.0, < 6.3.9600.200942021-08-12
CVE-2021-34537 [HIGH] CWE-269 CVE-2021-34537: Windows Bluetooth Driver Elevation of Privilege Vulnerability
Windows Bluetooth Driver Elevation of Privilege Vulnerability
nvd
CVE-2021-36942HIGHCVSS 7.5KEVPoC≥ 6.3.0, < 6.3.9600.200942021-08-12
CVE-2021-36942 [HIGH] Windows LSA Spoofing Vulnerability
Windows LSA Spoofing Vulnerability
Windows LSA Spoofing Vulnerability
cvelistv5
CVE-2021-34483HIGHCVSS 7.8≥ 6.3.0, < 6.3.9600.200942021-08-12
CVE-2021-34483 [HIGH] CWE-269 CVE-2021-34483: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2021-36932HIGHCVSS 7.5≥ 6.3.0, < 6.3.9600.200942021-08-12
CVE-2021-36932 [HIGH] CVE-2021-36932: Windows Services for NFS ONCRPC XDR Driver Information Disclosure Vulnerability
Windows Services for NFS ONCRPC XDR Driver Information Disclosure Vulnerability
nvd
CVE-2021-36958HIGHCVSS 7.8≥ 6.3.0, < 6.3.9600.201202021-08-12
CVE-2021-36958 [HIGH] CVE-2021-36958: <p>A remote code execution vulnerability exists when the Windows Print Spooler service improperly pe
A remote code execution vulnerability exists when the Windows Print Spooler service improperly performs privileged file operations. An attacker who successfully exploited this vulnerability could run arbitrary code with SYSTEM privileges. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.
nvd
CVE-2021-26433HIGHCVSS 7.5≥ 6.3.0, < 6.3.9600.200942021-08-12
CVE-2021-26433 [HIGH] CVE-2021-26433: Windows Services for NFS ONCRPC XDR Driver Information Disclosure Vulnerability
Windows Services for NFS ONCRPC XDR Driver Information Disclosure Vulnerability
nvd
CVE-2021-34480MEDIUMCVSS 6.8≥ 6.3.0, < 6.3.9600.20094≥ 6.3.0, < 1.0012021-08-12
CVE-2021-34480 [MEDIUM] Scripting Engine Memory Corruption Vulnerability
Scripting Engine Memory Corruption Vulnerability
Scripting Engine Memory Corruption Vulnerability
cvelistv5
CVE-2021-34481CRITICALCVSS 9.8≥ 6.3.0, < 6.3.9600.200942021-07-16
CVE-2021-34481 [CRITICAL] CWE-269 CVE-2021-34481: <p>A remote code execution vulnerability exists when the Windows Print Spooler service improperly pe
A remote code execution vulnerability exists when the Windows Print Spooler service improperly performs privileged file operations. An attacker who successfully exploited this vulnerability could run arbitrary code with SYSTEM privileges. An attacker could then install programs; view, change, or delete data; or create new accounts with full user r
nvd
CVE-2021-34441HIGHCVSS 7.8≥ 6.3.0, < 6.3.9600.200692021-07-16
CVE-2021-34441 [HIGH] CVE-2021-34441: Microsoft Windows Media Foundation Remote Code Execution Vulnerability
Microsoft Windows Media Foundation Remote Code Execution Vulnerability
nvd
CVE-2021-34460HIGHCVSS 7.8≥ 6.3.0, < 6.3.9600.200692021-07-16
CVE-2021-34460 [HIGH] CWE-269 CVE-2021-34460: Storage Spaces Controller Elevation of Privilege Vulnerability
Storage Spaces Controller Elevation of Privilege Vulnerability
nvd
CVE-2021-34447HIGHCVSS 8.8≥ 6.3.0, < 6.3.9600.20069≥ 6.3.0, < 1.0012021-07-16
CVE-2021-34447 [HIGH] CVE-2021-34447: Windows MSHTML Platform Remote Code Execution Vulnerability
Windows MSHTML Platform Remote Code Execution Vulnerability
nvd
CVE-2021-34459HIGHCVSS 7.8≥ 6.3.0, < 6.3.9600.200692021-07-16
CVE-2021-34459 [HIGH] CWE-269 CVE-2021-34459: Windows AppContainer Elevation Of Privilege Vulnerability
Windows AppContainer Elevation Of Privilege Vulnerability
nvd
CVE-2021-34442HIGHCVSS 7.5≥ 6.3.0, < 6.3.9600.200692021-07-16
CVE-2021-34442 [HIGH] CVE-2021-34442: Windows DNS Server Remote Code Execution Vulnerability
Windows DNS Server Remote Code Execution Vulnerability
nvd
CVE-2021-34455HIGHCVSS 7.8≥ 6.3.0, < 6.3.9600.200692021-07-16
CVE-2021-34455 [HIGH] CWE-269 CVE-2021-34455: Windows File History Service Elevation of Privilege Vulnerability
Windows File History Service Elevation of Privilege Vulnerability
nvd
CVE-2021-34446HIGHCVSS 8.8≥ 6.3.0, < 6.3.9600.20069≥ 6.3.0, < 1.0012021-07-16
CVE-2021-34446 [HIGH] CVE-2021-34446: Windows HTML Platforms Security Feature Bypass Vulnerability
Windows HTML Platforms Security Feature Bypass Vulnerability
nvd
CVE-2021-34456HIGHCVSS 7.8≥ 6.3.0, < 6.3.9600.200692021-07-16
CVE-2021-34456 [HIGH] CWE-269 CVE-2021-34456: Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
nvd
CVE-2021-34448MEDIUMCVSS 6.8KEV≥ 6.3.0, < 6.3.9600.20069≥ 6.3.0, < 1.0012021-07-16
CVE-2021-34448 [MEDIUM] Scripting Engine Memory Corruption Vulnerability
Scripting Engine Memory Corruption Vulnerability
Scripting Engine Memory Corruption Vulnerability
cvelistv5
CVE-2021-34457MEDIUMCVSS 5.5≥ 6.3.0, < 6.3.9600.200692021-07-16
CVE-2021-34457 [MEDIUM] CVE-2021-34457: Windows Remote Access Connection Manager Information Disclosure Vulnerability
Windows Remote Access Connection Manager Information Disclosure Vulnerability
nvd
CVE-2021-34454MEDIUMCVSS 5.5≥ 6.3.0, < 6.3.9600.200692021-07-16
CVE-2021-34454 [MEDIUM] CVE-2021-34454: Windows Remote Access Connection Manager Information Disclosure Vulnerability
Windows Remote Access Connection Manager Information Disclosure Vulnerability
nvd
CVE-2021-34444MEDIUMCVSS 6.5≥ 6.3.0, < 6.3.9600.200692021-07-16
CVE-2021-34444 [MEDIUM] CVE-2021-34444: Windows DNS Server Denial of Service Vulnerability
Windows DNS Server Denial of Service Vulnerability
nvd