cbcvebase.

Microsoft Windows Server 2012 R2 vulnerabilities

2,812 known vulnerabilities affecting microsoft/windows_server_2012_r2.

Total CVEs
2,812
CISA KEV
97
actively exploited
Public exploits
93
Exploited in wild
129
Severity breakdown
CRITICAL105HIGH1991MEDIUM704LOW12

Vulnerabilities

Page 105 of 141
CVE-2019-0715P4MEDIUMCVSS 5.8≥ 6.3.0, < publication2019-08-14
CVE-2019-0715 [MEDIUM] CWE-20 CVE-2019-0715: A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fail A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privileged user on a guest operating system. An attacker who successfully exploited the vulnerability could cause the host server to crash. To exploit the vulnerability, an attacker who already has a privileged account
nvd
CVE-2019-0714P4MEDIUMCVSS 5.8≥ 6.3.0, < publication2019-08-14
CVE-2019-0714 [MEDIUM] CWE-20 CVE-2019-0714: A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fail A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privileged user on a guest operating system. An attacker who successfully exploited the vulnerability could cause the host server to crash. To exploit the vulnerability, an attacker who already has a privileged account
nvd
CVE-2018-8333P4HIGHCVSS 7.0v(Server Core installation)2018-10-10
CVE-2018-8333 [HIGH] CWE-404 CVE-2018-8333: An Elevation of Privilege vulnerability exists in Filter Manager when it improperly handles objects An Elevation of Privilege vulnerability exists in Filter Manager when it improperly handles objects in memory, aka "Microsoft Filter Manager Elevation Of Privilege Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server 2019, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server
nvd
CVE-2021-41332P4MEDIUMCVSS 6.5≥ 6.3.0, < 6.3.9600.201442021-10-13
CVE-2021-41332 [MEDIUM] CVE-2021-41332: Windows Print Spooler Information Disclosure Vulnerability Windows Print Spooler Information Disclosure Vulnerability
nvd
CVE-2021-38629P4MEDIUMCVSS 6.5≥ 6.3.0, < 6.3.9600.201202021-09-15
CVE-2021-38629 [MEDIUM] CVE-2021-38629: Windows Ancillary Function Driver for WinSock Information Disclosure Vulnerability Windows Ancillary Function Driver for WinSock Information Disclosure Vulnerability
nvd
CVE-2025-21419P4HIGHCVSS 7.1≥ 6.3.9600.0, < 6.3.9600.224172025-02-11
CVE-2025-21419 [HIGH] CWE-59 CVE-2025-21419: Windows Setup Files Cleanup Elevation of Privilege Vulnerability Windows Setup Files Cleanup Elevation of Privilege Vulnerability
nvd
CVE-2024-21432P4HIGHCVSS 7.0≥ 6.3.9600.0, < 6.3.9600.218712024-03-12
CVE-2024-21432 [HIGH] CWE-59 CVE-2024-21432: Windows Update Stack Elevation of Privilege Vulnerability Windows Update Stack Elevation of Privilege Vulnerability
nvd
CVE-2022-21862P4HIGHCVSS 7.0≥ 6.3.9600.0, < 6.3.9600.202462022-01-11
CVE-2022-21862 [HIGH] CVE-2022-21862: Windows Application Model Core API Elevation of Privilege Vulnerability Windows Application Model Core API Elevation of Privilege Vulnerability
nvd
CVE-2022-30151P4HIGHCVSS 7.0≥ 6.3.9600.0, < 6.3.9600.204022022-06-15
CVE-2022-30151 [HIGH] CVE-2022-30151: Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
nvd
CVE-2024-21439P4HIGHCVSS 7.0≥ 6.3.9600.0, < 6.3.9600.218712024-03-12
CVE-2024-21439 [HIGH] CWE-416 CVE-2024-21439: Windows Telephony Server Elevation of Privilege Vulnerability Windows Telephony Server Elevation of Privilege Vulnerability
nvd
CVE-2022-26808P4HIGHCVSS 7.0≥ 6.3.9600.0, < 6.3.9600.203372022-04-15
CVE-2022-26808 [HIGH] CWE-362 CVE-2022-26808: Windows File Explorer Elevation of Privilege Vulnerability Windows File Explorer Elevation of Privilege Vulnerability
nvd
CVE-2022-26827P4HIGHCVSS 7.0≥ 6.3.9600.0, < 6.3.9600.203372022-04-15
CVE-2022-26827 [HIGH] CWE-362 CVE-2022-26827: Windows File Server Resource Management Service Elevation of Privilege Vulnerability Windows File Server Resource Management Service Elevation of Privilege Vulnerability
nvd
CVE-2024-26242P4HIGHCVSS 7.0≥ 6.3.9600.0, < 6.3.9600.219242024-04-09
CVE-2024-26242 [HIGH] CWE-591 CVE-2024-26242: Windows Telephony Server Elevation of Privilege Vulnerability Windows Telephony Server Elevation of Privilege Vulnerability
nvd
CVE-2023-35361P4HIGHCVSS 7.0≥ 6.3.9600.0, < 6.3.9600.210632023-07-11
CVE-2023-35361 [HIGH] CWE-362 CVE-2023-35361: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2023-35360P4HIGHCVSS 7.0≥ 6.3.9600.0, < 6.3.9600.210632023-07-11
CVE-2023-35360 [HIGH] CWE-591 CVE-2023-35360: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2024-30063P4MEDIUMCVSS 6.7≥ 6.3.9600.0, < 6.3.9600.220232024-06-11
CVE-2024-30063 [MEDIUM] CWE-641 CVE-2024-30063: Windows Distributed File System (DFS) Remote Code Execution Vulnerability Windows Distributed File System (DFS) Remote Code Execution Vulnerability
nvd
CVE-2025-49678P4HIGHCVSS 7.0≥ 6.3.9600.0, < 6.3.9600.226762025-07-08
CVE-2025-49678 [HIGH] CWE-362 CVE-2025-49678: Null pointer dereference in Windows NTFS allows an authorized attacker to elevate privileges locally Null pointer dereference in Windows NTFS allows an authorized attacker to elevate privileges locally.
nvd
CVE-2023-24883P4MEDIUMCVSS 6.5≥ 6.3.9600.0, < 6.3.9600.209192023-04-11
CVE-2023-24883 [MEDIUM] CWE-126 CVE-2023-24883: Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability
nvd
CVE-2023-24906P4MEDIUMCVSS 6.5≥ 6.3.9600.0, < 6.3.9600.208652023-03-14
CVE-2023-24906 [MEDIUM] CWE-190 CVE-2023-24906: Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability
nvd
CVE-2023-24857P4MEDIUMCVSS 6.5≥ 6.3.9600.0, < 6.3.9600.208652023-03-14
CVE-2023-24857 [MEDIUM] CWE-126 CVE-2023-24857: Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability
nvd
Microsoft Windows Server 2012 R2 vulnerabilities | cvebase