VendorsMicrosoftwindows_server_2012any version
Vulnerabilities

Microsoft Windows Server 2012 any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4774CVEs
CVE-2018-8444
An information disclosure vulnerability exists in the way that the Microsoft Server Message Block 2.0 (SMBv2) server handles certain requests, aka "Windows SMB Information Disclosure Vulnerability." This affects Windows Server 2012, Windows 10, Windows 8.1, Windows RT 8.1, Windows Server 2012 R2.
Published 2018-09-13 · Modified
5.9EPSS 0.059
CVE-2019-0657
A vulnerability exists in certain .Net Framework API's and Visual Studio in the way they parse URL's, aka '.NET Framework and Visual Studio Spoofing Vulnerability'.
Published 2019-03-06 · Modified
5.9EPSS 0.045
CVE-2017-0171
Windows DNS Server allows a denial of service vulnerability when Microsoft Windows Server 2008 SP2 and R2 SP1, Windows Server 2012 Gold and R2, and Windows Server 2016 are configured to answer version queries, aka "Windows DNS Server Denial of Service Vulnerability".
Published 2017-05-12 · Modified
5.9EPSS 0.041
CVE-2019-1318
A spoofing vulnerability exists when Transport Layer Security (TLS) accesses non- Extended Master Secret (EMS) sessions, aka 'Microsoft Windows Transport Layer Security Spoofing Vulnerability'.
Published 2019-10-10 · Modified
5.9EPSS 0.035
CVE-2021-33764
Windows Key Distribution Center Information Disclosure Vulnerability
Published 2021-07-14 · Modified
5.9EPSS 0.030
CVE-2022-22028
Windows Network File System Information Disclosure Vulnerability
Published 2022-07-12 · Modified
5.9EPSS 0.024
CVE-2025-21350
Windows Kerberos Denial of Service Vulnerability
Published 2025-02-11 · Analyzed
5.9EPSS 0.021
CVE-2022-35747
Windows Point-to-Point Protocol (PPP) Denial of Service Vulnerability
Published 2023-05-31 · Modified
5.9EPSS 0.017
CVE-2025-21242
Windows Kerberos Information Disclosure Vulnerability
Published 2025-01-14 · Analyzed
5.9EPSS 0.016
CVE-2022-37965
Windows Point-to-Point Tunneling Protocol Denial of Service Vulnerability
Published 2022-10-11 · Modified
5.9EPSS 0.016
CVE-2025-29954
Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability
Published 2025-05-13 · Analyzed
5.9EPSS 0.014
CVE-2024-38099
Windows Remote Desktop Licensing Service Denial of Service Vulnerability
Published 2024-07-09 · Modified
5.9EPSS 0.013
CVE-2025-27471
Microsoft Streaming Service Denial of Service Vulnerability
Published 2025-04-08 · Analyzed
5.9EPSS 0.013
CVE-2023-24900
Windows NTLM Security Support Provider Information Disclosure Vulnerability
Published 2023-05-09 · Modified
5.9EPSS 0.012
CVE-2022-41090
Windows Point-to-Point Tunneling Protocol Denial of Service Vulnerability
Published 2022-11-09 · Modified
5.9EPSS 0.011
CVE-2026-50324
Windows Active Directory Federation Services Denial of Service Vulnerability
Published 2026-07-14 · Analyzed
5.9EPSS 0.009
CVE-2026-32226
.NET Framework Denial of Service Vulnerability
Published 2026-04-14 · Analyzed
5.9EPSS 0.007
CVE-2026-70091
Windows DNS Denial of Service Vulnerability
Published 2026-09-08 · Analyzed
5.9EPSS 0.007
CVE-2019-13163
The Fujitsu TLS library allows a man-in-the-middle attack. This affects Interstage Application Development Cycle Manager V10 and other versions, Interstage Application Server V12 and other versions, Interstage Business Application Manager V2 and other versions, Interstage Information Integrator V11 and other versions, Interstage Job Workload Server V8, Interstage List Works V10 and other versions, Interstage Studio V12 and other versions, Interstage Web Server Express V11, Linkexpress V5, Safeauthor V3, ServerView Resource Orchestrator V3, Systemwalker Cloud Business Service Management V1, Systemwalker Desktop Keeper V15, Systemwalker Desktop Patrol V15, Systemwalker IT Change Manager V14, Systemwalker Operation Manager V16 and other versions, Systemwalker Runbook Automation V15 and other versions, Systemwalker Security Control V1, and Systemwalker Software Configuration Manager V15.
Published 2020-02-07 · Modified
5.9EPSS 0.006
CVE-2026-62757
Windows Schannel Security Feature Bypass Vulnerability
Published 2026-08-11 · Analyzed
5.9EPSS 0.003
CVE-2012-2549
The IP-HTTPS server in Windows Server 2008 R2 and R2 SP1 and Server 2012 does not properly validate certificates, which allows remote attackers to bypass intended access restrictions via a revoked certificate, aka "Revoked Certificate Bypass Vulnerability."
Published 2012-12-12 · Modified
5.8EPSS 0.100
CVE-2013-1299
Microsoft Windows Modern Mail allows remote attackers to spoof link targets via a crafted HTML e-mail message.
Published 2013-03-29 · Modified
5.8EPSS 0.095
CVE-2013-0013
The SSL provider component in Microsoft Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, Windows 7 Gold and SP1, Windows 8, Windows Server 2012, and Windows RT does not properly handle encrypted packets, which allows man-in-the-middle attackers to conduct SSLv2 downgrade attacks against (1) SSLv3 sessions or (2) TLS sessions by intercepting handshakes and injecting content, aka "Microsoft SSL Version 3 and TLS Protocol Security Feature Bypass Vulnerability."
Published 2013-01-09 · Modified
5.8EPSS 0.064
CVE-2019-0718
Windows Hyper-V Denial of Service Vulnerability
Published 2019-08-14 · Modified
5.8EPSS 0.050
CVE-2019-0723
Windows Hyper-V Denial of Service Vulnerability
Published 2019-08-14 · Modified
5.8EPSS 0.050
CVE-2019-0714
Windows Hyper-V Denial of Service Vulnerability
Published 2019-08-14 · Modified
5.8EPSS 0.050
CVE-2019-0715
Windows Hyper-V Denial of Service Vulnerability
Published 2019-08-14 · Modified
5.8EPSS 0.050
CVE-2017-0191
A denial of service vulnerability exists in the way that Windows 7, Windows 8.1, Windows 10, Windows Server 2008 R2, Windows Server 2012, Windows Server 2012 R2, and Windows Server 2016 handles objects in memory. An attacker who successfully exploited the vulnerability could cause a target system to stop responding, aka "Windows Denial of Service Vulnerability."
Published 2017-04-12 · Modified
5.8EPSS 0.047
CVE-2015-6112
SChannel in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 lacks the required extended master-secret binding support to ensure that a server's X.509 certificate is the same during renegotiation as it was before renegotiation, which allows man-in-the-middle attackers to obtain sensitive information or modify TLS session data via a "triple handshake attack," aka "Schannel TLS Triple Handshake Vulnerability."
Published 2015-11-11 · Modified
5.8EPSS 0.028
CVE-2022-41064
.NET Framework Information Disclosure Vulnerability
Published 2022-11-09 · Modified
5.8EPSS 0.008
CVE-2021-1708
Windows GDI+ Information Disclosure Vulnerability
Published 2021-01-12 · Modified
5.7EPSS 0.034
CVE-2023-21693
Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability
Published 2023-02-14 · Modified
5.7EPSS 0.014
CVE-2025-53719
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
Published 2025-08-12 · Analyzed
5.7EPSS 0.013
CVE-2025-50156
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
Published 2025-08-12 · Analyzed
5.7EPSS 0.012
CVE-2025-50157
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
Published 2025-08-12 · Analyzed
5.7EPSS 0.012
CVE-2025-53138
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
Published 2025-08-12 · Analyzed
5.7EPSS 0.012
CVE-2025-53148
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
Published 2025-08-12 · Analyzed
5.7EPSS 0.012
CVE-2025-53153
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
Published 2025-08-12 · Analyzed
5.7EPSS 0.012
CVE-2024-20692
Microsoft Local Security Authority Subsystem Service Information Disclosure Vulnerability
Published 2024-01-09 · Modified
5.7EPSS 0.012
CVE-2026-69723
Windows Kernel Information Disclosure Vulnerability
Published 2026-09-08 · Analyzed
5.7EPSS 0.009
← Prev101 / 120Next →