Microsoft Windows Server 2012 R2 vulnerabilities

2,520 known vulnerabilities affecting microsoft/windows_server_2012_r2.

Total CVEs
2,520
CISA KEV
95
actively exploited
Public exploits
59
Exploited in wild
82
Severity breakdown
CRITICAL85HIGH1779MEDIUM647LOW9

Vulnerabilities

Page 78 of 126
CVE-2022-38037HIGHCVSS 7.8≥ 6.3.9600.0, < 6.3.9600.206252022-10-11
CVE-2022-38037 [HIGH] CVE-2022-38037: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2022-22035HIGHCVSS 8.1≥ 6.3.9600.0, < 6.3.9600.206252022-10-11
CVE-2022-22035 [HIGH] CWE-362 CVE-2022-22035: Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
nvd
CVE-2022-38031HIGHCVSS 8.8≥ 6.3.9600.0, < 6.3.9600.206252022-10-11
CVE-2022-38031 [HIGH] CVE-2022-38031: Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
nvd
CVE-2022-41033HIGHCVSS 7.8KEV≥ 6.3.9600.0, < 6.3.9600.206252022-10-11
CVE-2022-41033 [HIGH] CWE-843 CVE-2022-41033: Windows COM+ Event System Service Elevation of Privilege Vulnerability Windows COM+ Event System Service Elevation of Privilege Vulnerability
nvd
CVE-2022-37987HIGHCVSS 7.8≥ 6.3.9600.0, < 6.3.9600.206252022-10-11
CVE-2022-37987 [HIGH] CVE-2022-37987: Windows Client Server Run-time Subsystem (CSRSS) Elevation of Privilege Vulnerability Windows Client Server Run-time Subsystem (CSRSS) Elevation of Privilege Vulnerability
nvd
CVE-2022-38042HIGHCVSS 7.1≥ 6.3.9600.0, < 6.3.9600.206252022-10-11
CVE-2022-38042 [HIGH] CVE-2022-38042: Active Directory Domain Services Elevation of Privilege Vulnerability Active Directory Domain Services Elevation of Privilege Vulnerability
nvd
CVE-2022-37994HIGHCVSS 7.8≥ 6.3.9600.0, < 6.3.9600.206252022-10-11
CVE-2022-37994 [HIGH] CVE-2022-37994: Windows Group Policy Preference Client Elevation of Privilege Vulnerability Windows Group Policy Preference Client Elevation of Privilege Vulnerability
nvd
CVE-2022-38034HIGHCVSS 8.8≥ 6.3.9600.0, < 6.3.9600.206252022-10-11
CVE-2022-38034 [HIGH] CVE-2022-38034: Windows Workstation Service Elevation of Privilege Vulnerability Windows Workstation Service Elevation of Privilege Vulnerability
nvd
CVE-2022-37999HIGHCVSS 7.8≥ 6.3.9600.0, < 6.3.9600.206252022-10-11
CVE-2022-37999 [HIGH] CVE-2022-37999: Windows Group Policy Preference Client Elevation of Privilege Vulnerability Windows Group Policy Preference Client Elevation of Privilege Vulnerability
nvd
CVE-2022-37990HIGHCVSS 7.8≥ 6.3.9600.0, < 6.3.9600.206252022-10-11
CVE-2022-37990 [HIGH] CVE-2022-37990: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2022-34689HIGHCVSS 7.5≥ 6.3.9600.0, < 6.3.9600.205202022-10-11
CVE-2022-34689 [HIGH] Windows CryptoAPI Spoofing Vulnerability Windows CryptoAPI Spoofing Vulnerability Windows CryptoAPI Spoofing Vulnerability
cvelistv5
CVE-2022-33645HIGHCVSS 7.5≥ 6.3.9600.0, < 6.3.9600.206252022-10-11
CVE-2022-33645 [HIGH] CVE-2022-33645: Windows TCP/IP Driver Denial of Service Vulnerability Windows TCP/IP Driver Denial of Service Vulnerability
nvd
CVE-2022-38029HIGHCVSS 7.0≥ 6.3.9600.0, < 6.3.9600.206252022-10-11
CVE-2022-38029 [HIGH] Windows ALPC Elevation of Privilege Vulnerability Windows ALPC Elevation of Privilege Vulnerability Windows ALPC Elevation of Privilege Vulnerability
cvelistv5
CVE-2022-30198HIGHCVSS 8.1≥ 6.3.9600.0, < 6.3.9600.206252022-10-11
CVE-2022-30198 [HIGH] CWE-362 CVE-2022-30198: Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
nvd
CVE-2022-38000HIGHCVSS 8.1≥ 6.3.9600.0, < 6.3.9600.206252022-10-11
CVE-2022-38000 [HIGH] CWE-362 CVE-2022-38000: Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
nvd
CVE-2022-37981MEDIUMCVSS 4.3≥ 6.3.9600.0, < 6.3.9600.206252022-10-11
CVE-2022-37981 [MEDIUM] CVE-2022-37981: Windows Event Logging Service Denial of Service Vulnerability Windows Event Logging Service Denial of Service Vulnerability
nvd
CVE-2022-38032MEDIUMCVSS 6.6≥ 6.3.9600.0, < 6.3.9600.206252022-10-11
CVE-2022-38032 [MEDIUM] CVE-2022-38032: Windows Portable Device Enumerator Service Security Feature Bypass Vulnerability Windows Portable Device Enumerator Service Security Feature Bypass Vulnerability
nvd
CVE-2022-37977MEDIUMCVSS 6.5≥ 6.3.9600.0, < 6.3.9600.206252022-10-11
CVE-2022-37977 [MEDIUM] CVE-2022-37977: Local Security Authority Subsystem Service (LSASS) Denial of Service Vulnerability Local Security Authority Subsystem Service (LSASS) Denial of Service Vulnerability
nvd
CVE-2022-38033MEDIUMCVSS 6.5≥ 6.3.9600.0, < 6.3.9600.206252022-10-11
CVE-2022-38033 [MEDIUM] CVE-2022-38033: Windows Server Remotely Accessible Registry Keys Information Disclosure Vulnerability Windows Server Remotely Accessible Registry Keys Information Disclosure Vulnerability
nvd
CVE-2022-38043MEDIUMCVSS 5.5≥ 6.3.9600.0, < 6.3.9600.206252022-10-11
CVE-2022-38043 [MEDIUM] CVE-2022-38043: Windows Security Support Provider Interface Information Disclosure Vulnerability Windows Security Support Provider Interface Information Disclosure Vulnerability
nvd