VendorsMicrosoftwindows_server_2012r2
Vulnerabilities

Microsoft Windows Server 2012 r2

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4836CVEs
CVE-2024-43456
Windows Remote Desktop Services Tampering Vulnerability
Published 2024-10-08 · Analyzed
7.4EPSS 0.007
CVE-2023-21820
Windows Distributed File System (DFS) Remote Code Execution Vulnerability
Published 2023-02-14 · Modified
7.4EPSS 0.006
CVE-2026-40413
Windows TCP/IP Denial of Service Vulnerability
Published 2026-05-12 · Modified
7.4EPSS 0.006
CVE-2026-40414
Windows TCP/IP Denial of Service Vulnerability
Published 2026-05-12 · Modified
7.4EPSS 0.006
CVE-2024-43553
NT OS Kernel Elevation of Privilege Vulnerability
Published 2024-10-08 · Analyzed
7.4EPSS 0.005
CVE-2024-26194
Secure Boot Security Feature Bypass Vulnerability
Published 2024-04-09 · Analyzed
7.4EPSS 0.004
CVE-2026-32156
Windows UPnP Device Host Remote Code Execution Vulnerability
Published 2026-04-14 · Analyzed
7.4EPSS 0.003
CVE-2026-69347
Windows Fast FAT Driver Remote Code Execution Vulnerability
Published 2026-09-08 · Analyzed
7.4EPSS 0.003
CVE-2025-55335
Windows NTFS Elevation of Privilege Vulnerability
Published 2025-10-14 · Analyzed
7.4EPSS 0.003
CVE-2025-55687
Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability
Published 2025-10-14 · Analyzed
7.4EPSS 0.003
CVE-2017-0213
Windows COM Aggregate Marshaler in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows an elevation privilege vulnerability when an attacker runs a specially crafted application, aka "Windows COM Elevation of Privilege Vulnerability". This CVE ID is unique from CVE-2017-0214.
Published 2017-05-12 · Analyzed
7.3KEV1 PoCEPSS 0.841
CVE-2016-0018
Microsoft Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 R2, and Windows 10 Gold and 1511 mishandle DLL loading, which allows local users to gain privileges via a crafted application, aka "DLL Loading Remote Code Execution Vulnerability."
Published 2016-01-13 · Modified
7.3EPSS 0.135
CVE-2022-35755
Windows Print Spooler Elevation of Privilege Vulnerability
Published 2023-05-31 · Modified
7.3EPSS 0.098
CVE-2022-35793
Windows Print Spooler Elevation of Privilege Vulnerability
Published 2022-08-09 · Modified
7.3EPSS 0.091
CVE-2016-0006
The sandbox implementation in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 Gold and 1511 mishandles reparse points, which allows local users to gain privileges via a crafted application, aka "Windows Mount Point Elevation of Privilege Vulnerability," a different vulnerability than CVE-2016-0007.
Published 2016-01-13 · Modified
7.31 PoCEPSS 0.040
CVE-2016-3252
The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 allow local users to gain privileges via a crafted application, aka "Win32k Elevation of Privilege Vulnerability," a different vulnerability than CVE-2016-3249, CVE-2016-3254, and CVE-2016-3286.
Published 2016-07-13 · Modified
7.3EPSS 0.038
CVE-2017-8460
Windows PDF in Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows information disclosure when a user opens a specially crafted PDF file, aka "Windows PDF Information Disclosure Vulnerability".
Published 2017-06-15 · Modified
7.3EPSS 0.033
CVE-2016-7211
The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold, 1511, and 1607 allow local users to gain privileges via a crafted application, aka "Win32k Elevation of Privilege Vulnerability." a different vulnerability than CVE-2016-3266, CVE-2016-3376, and CVE-2016-7185.
Published 2016-10-14 · Modified
7.3EPSS 0.030
CVE-2016-3249
The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 allow local users to gain privileges via a crafted application, aka "Win32k Elevation of Privilege Vulnerability," a different vulnerability than CVE-2016-3252, CVE-2016-3254, and CVE-2016-3286.
Published 2016-07-13 · Modified
7.3EPSS 0.025
CVE-2016-3286
The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 allow local users to gain privileges via a crafted application, aka "Win32k Elevation of Privilege Vulnerability," a different vulnerability than CVE-2016-3249, CVE-2016-3252, and CVE-2016-3254.
Published 2016-07-13 · Modified
7.3EPSS 0.025
CVE-2024-21409
.NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability
Published 2024-04-09 · Modified
7.3EPSS 0.025
CVE-2017-0298
A DCOM object in Helppane.exe in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016, when configured to run as the interactive user, allows an authenticated attacker to run arbitrary code in another user's session, aka "Windows COM Session Elevation of Privilege Vulnerability."
Published 2017-06-15 · Modified
7.3EPSS 0.019
CVE-2022-30170
Windows Credential Roaming Service Elevation of Privilege Vulnerability
Published 2022-09-13 · Modified
7.3EPSS 0.016
CVE-2024-38081
.NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability
Published 2024-07-09 · Modified
7.3EPSS 0.013
CVE-2024-30093
Windows Storage Elevation of Privilege Vulnerability
Published 2024-06-11 · Modified
7.3EPSS 0.011
CVE-2024-38033
PowerShell Elevation of Privilege Vulnerability
Published 2024-07-09 · Modified
7.3EPSS 0.011
CVE-2025-21331
Windows Installer Elevation of Privilege Vulnerability
Published 2025-01-14 · Analyzed
7.3EPSS 0.010
CVE-2023-36578
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
Published 2023-10-10 · Modified
7.3EPSS 0.010
CVE-2023-36582
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
Published 2023-10-10 · Modified
7.3EPSS 0.010
CVE-2023-36583
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
Published 2023-10-10 · Modified
7.3EPSS 0.010
CVE-2023-36590
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
Published 2023-10-10 · Modified
7.3EPSS 0.010
CVE-2023-36570
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
Published 2023-10-10 · Modified
7.3EPSS 0.010
CVE-2023-36571
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
Published 2023-10-10 · Modified
7.3EPSS 0.010
CVE-2023-36572
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
Published 2023-10-10 · Modified
7.3EPSS 0.010
CVE-2023-36573
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
Published 2023-10-10 · Modified
7.3EPSS 0.010
CVE-2023-36574
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
Published 2023-10-10 · Modified
7.3EPSS 0.010
CVE-2023-36575
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
Published 2023-10-10 · Modified
7.3EPSS 0.010
CVE-2023-36589
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
Published 2023-10-10 · Modified
7.3EPSS 0.010
CVE-2023-36592
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
Published 2023-10-10 · Modified
7.3EPSS 0.010
CVE-2024-26232
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
Published 2024-04-09 · Analyzed
7.3EPSS 0.009
← Prev78 / 121Next →