cbcvebase.

Microsoft Windows Server 2012 R2 vulnerabilities

2,812 known vulnerabilities affecting microsoft/windows_server_2012_r2.

Total CVEs
2,812
CISA KEV
97
actively exploited
Public exploits
93
Exploited in wild
129
Severity breakdown
CRITICAL105HIGH1991MEDIUM704LOW12

Vulnerabilities

Page 82 of 141
CVE-2021-34537P3HIGHCVSS 8.0≥ 6.3.0, < 6.3.9600.200942021-08-12
CVE-2021-34537 [HIGH] CWE-269 CVE-2021-34537: Windows Bluetooth Driver Elevation of Privilege Vulnerability Windows Bluetooth Driver Elevation of Privilege Vulnerability
nvd
CVE-2020-1559P3HIGHCVSS 7.8≥ 6.3.0, < publication2020-09-11
CVE-2020-1559 [HIGH] CVE-2020-1559: <p>An elevation of privilege vulnerability exists when the Windows Storage Services improperly handl An elevation of privilege vulnerability exists when the Windows Storage Services improperly handle file operations. An attacker who successfully exploited this vulnerability could gain elevated privileges. To exploit the vulnerability, an attacker would first need code execution on a victim system. An attacker could then run a specially crafted application. The
nvd
CVE-2020-1513P3HIGHCVSS 7.8≥ 6.3.0, < publication2020-08-17
CVE-2020-1513 [HIGH] CVE-2020-1513: An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memor An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memory. To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges. The security update addresses the vulnerability by correcting how the Windows
nvd
CVE-2020-1516P3HIGHCVSS 7.8≥ 6.3.0, < publication2020-08-17
CVE-2020-1516 [HIGH] CVE-2020-1516: An elevation of privilege vulnerability exists when the Windows Work Folders Service improperly hand An elevation of privilege vulnerability exists when the Windows Work Folders Service improperly handles memory. To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges. The security update addresses the vulnerability by correcting how the
nvd
CVE-2020-1489P3HIGHCVSS 7.8≥ 6.3.0, < publication2020-08-17
CVE-2020-1489 [HIGH] CVE-2020-1489: An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memor An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memory. To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges. The security update addresses the vulnerability by correcting how the Windows
nvd
CVE-2020-16892P3HIGHCVSS 7.8≥ 6.3.0, < publication2020-10-16
CVE-2020-16892 [HIGH] CVE-2020-16892: <p>An elevation of privilege vulnerability exists in the way that the Windows kernel image handles o An elevation of privilege vulnerability exists in the way that the Windows kernel image handles objects in memory. An attacker who successfully exploited the vulnerability could execute code with elevated permissions. To exploit the vulnerability, a locally authenticated attacker could run a specially crafted application. The security update addresses the vul
nvd
CVE-2022-21908P3HIGHCVSS 7.8≥ 6.3.9600.0, < 6.3.9600.202462022-01-11
CVE-2022-21908 [HIGH] CVE-2022-21908: Windows Installer Elevation of Privilege Vulnerability Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2020-16980P3HIGHCVSS 7.8≥ 6.3.0, < publication2020-10-16
CVE-2020-16980 [HIGH] CVE-2020-16980: <p>An elevation of privilege vulnerability exists when the Windows iSCSI Target Service improperly h An elevation of privilege vulnerability exists when the Windows iSCSI Target Service improperly handles file operations. An attacker who successfully exploited this vulnerability could gain elevated privileges. To exploit the vulnerability, an attacker would first need code execution on a victim system. An attacker could then run a specially crafted applicati
nvd
CVE-2019-1162P3HIGHCVSS 7.8≥ 6.3.0, < publication2019-08-14
CVE-2019-1162 [HIGH] CWE-269 CVE-2019-1162: An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Loc An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Local Procedure Call (ALPC). An attacker who successfully exploited this vulnerability could run arbitrary code in the security context of the local system. An attacker could then install programs; view, change, or delete data; or create new accounts with fu
nvd
CVE-2023-36907P3HIGHCVSS 7.5≥ 6.3.9600.0, < 6.3.9600.215032023-08-08
CVE-2023-36907 [HIGH] CWE-170 CVE-2023-36907: Windows Cryptographic Services Information Disclosure Vulnerability Windows Cryptographic Services Information Disclosure Vulnerability
nvd
CVE-2021-1695P3HIGHCVSS 7.8≥ 6.3.0, < publication2021-01-12
CVE-2021-1695 [HIGH] CWE-269 CVE-2021-1695: Windows Print Spooler Elevation of Privilege Vulnerability Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2022-26798P3HIGHCVSS 7.8≥ 6.3.9600.0, < 6.3.9600.203372022-04-15
CVE-2022-26798 [HIGH] CVE-2022-26798: Windows Print Spooler Elevation of Privilege Vulnerability Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2022-26803P3HIGHCVSS 7.8≥ 6.3.9600.0, < 6.3.9600.203372022-04-15
CVE-2022-26803 [HIGH] CVE-2022-26803: Windows Print Spooler Elevation of Privilege Vulnerability Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2021-26425P3HIGHCVSS 7.8≥ 6.3.0, < 6.3.9600.200942021-08-12
CVE-2021-26425 [HIGH] CWE-59 CVE-2021-26425: Windows Event Tracing Elevation of Privilege Vulnerability Windows Event Tracing Elevation of Privilege Vulnerability
nvd
CVE-2021-1640P3HIGHCVSS 7.8≥ 6.3.0, < publication2021-03-11
CVE-2021-1640 [HIGH] CWE-269 CVE-2021-1640: Windows Print Spooler Elevation of Privilege Vulnerability Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2021-1661P3HIGHCVSS 7.8≥ 6.3.0, < publication2021-01-12
CVE-2021-1661 [HIGH] CWE-665 CVE-2021-1661: Windows Installer Elevation of Privilege Vulnerability Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2022-38005P3HIGHCVSS 7.8≥ 6.3.9600.0, < 6.3.9600.205712022-09-13
CVE-2022-38005 [HIGH] CVE-2022-38005: Windows Print Spooler Elevation of Privilege Vulnerability Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2020-1537P3HIGHCVSS 7.8≥ 6.3.0, < publication2020-08-17
CVE-2020-1537 [HIGH] CVE-2020-1537: An elevation of privilege vulnerability exists when the Windows Remote Access improperly handles fil An elevation of privilege vulnerability exists when the Windows Remote Access improperly handles file operations. An attacker who successfully exploited this vulnerability could gain elevated privileges. To exploit the vulnerability, an attacker would first need code execution on a victim system. An attacker could then run a specially crafted application. The s
nvd
CVE-2023-36913P3HIGHCVSS 7.5≥ 6.3.9600.0, < 6.3.9600.215032023-08-08
CVE-2023-36913 [HIGH] CWE-908 CVE-2023-36913: Microsoft Message Queuing Information Disclosure Vulnerability Microsoft Message Queuing Information Disclosure Vulnerability
nvd
CVE-2022-26796P3HIGHCVSS 7.8≥ 6.3.9600.0, < 6.3.9600.203372022-04-15
CVE-2022-26796 [HIGH] CVE-2022-26796: Windows Print Spooler Elevation of Privilege Vulnerability Windows Print Spooler Elevation of Privilege Vulnerability
nvd
Microsoft Windows Server 2012 R2 vulnerabilities | cvebase