VendorsMicrosoftwindows_server_2022all versions
Vulnerabilities

Microsoft Windows Server 2022

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4002CVEs
CVE-2025-55326
Windows Connected Devices Platform Service (Cdpsvc) Remote Code Execution Vulnerability
Published 2025-10-14 · Analyzed
7.5EPSS 0.008
CVE-2026-70124
Windows DHCP Server Information Disclosure Vulnerability
Published 2026-09-08 · Analyzed
7.5EPSS 0.008
CVE-2026-69803
Windows DHCP Server Information Disclosure Vulnerability
Published 2026-09-08 · Analyzed
7.5EPSS 0.008
CVE-2026-69930
Windows DHCP Server Information Disclosure Vulnerability
Published 2026-09-08 · Analyzed
7.5EPSS 0.008
CVE-2026-69929
Windows DHCP Server Information Disclosure Vulnerability
Published 2026-09-08 · Analyzed
7.5EPSS 0.008
CVE-2026-69793
Windows TCP/IP Security Feature Bypass Vulnerability
Published 2026-09-08 · Analyzed
7.5EPSS 0.008
CVE-2026-20919
Windows SMB Server Elevation of Privilege Vulnerability
Published 2026-01-13 · Analyzed
7.5EPSS 0.008
CVE-2026-20926
Windows SMB Server Elevation of Privilege Vulnerability
Published 2026-01-13 · Analyzed
7.5EPSS 0.008
CVE-2025-27484
Windows Universal Plug and Play (UPnP) Device Host Elevation of Privilege Vulnerability
Published 2025-04-08 · Analyzed
7.5EPSS 0.008
CVE-2023-35309
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
Published 2023-07-11 · Modified
7.5EPSS 0.008
CVE-2024-38198
Windows Print Spooler Elevation of Privilege Vulnerability
Published 2024-08-13 · Analyzed
7.5EPSS 0.008
CVE-2025-21296
BranchCache Remote Code Execution Vulnerability
Published 2025-01-14 · Analyzed
7.5EPSS 0.008
CVE-2022-40732
An access violation vulnerability exists in the DirectComposition functionality win32kbase.sys driver version 10.0.22000.593 as part of Windows 11 version 22000.593 and version 10.0.20348.643 as part of Windows Server 2022 version 20348.643. A specially-crafted set of syscalls can lead to a reboot. An unprivileged user can run specially-crafted code to trigger Denial Of Service.
Published 2024-12-18 · Analyzed
7.5EPSS 0.008
CVE-2026-20848
Windows SMB Server Elevation of Privilege Vulnerability
Published 2026-01-13 · Analyzed
7.5EPSS 0.008
CVE-2026-20934
Windows SMB Server Elevation of Privilege Vulnerability
Published 2026-01-13 · Analyzed
7.5EPSS 0.008
CVE-2024-38119
Windows Network Address Translation (NAT) Remote Code Execution Vulnerability
Published 2024-09-10 · Analyzed
7.5EPSS 0.008
CVE-2023-29413
A CWE-306: Missing Authentication for Critical Function vulnerability exists that could cause Denial-of-Service when accessed by an unauthenticated user on the Schneider UPS Monitor service.
Published 2023-04-18 · Modified
7.5EPSS 0.007
CVE-2026-77896
Windows Remote Desktop Client Denial of Service Vulnerability
Published 2026-09-08 · Analyzed
7.5EPSS 0.007
CVE-2026-72943
Windows Deployment Services Remote Code Execution Vulnerability
Published 2026-09-08 · Analyzed
7.5EPSS 0.007
CVE-2026-50685
Windows DHCP Server Remote Code Execution Vulnerability
Published 2026-07-14 · Analyzed
7.5EPSS 0.007
CVE-2026-69429
Windows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution Vulnerability
Published 2026-09-08 · Analyzed
7.5EPSS 0.007
CVE-2026-62787
Windows DNS Server Remote Code Execution Vulnerability
Published 2026-08-11 · Analyzed
7.5EPSS 0.007
CVE-2026-69514
Remote Desktop Services Remote Code Execution Vulnerability
Published 2026-09-08 · Analyzed
7.5EPSS 0.007
CVE-2026-69852
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
Published 2026-09-08 · Analyzed
7.5EPSS 0.007
CVE-2026-72954
Windows Deployment Services Remote Code Execution Vulnerability
Published 2026-09-08 · Analyzed
7.5EPSS 0.007
CVE-2026-69539
Remote Desktop Services Remote Code Execution Vulnerability
Published 2026-09-08 · Analyzed
7.5EPSS 0.007
CVE-2025-26634
Windows Core Messaging Elevation of Privileges Vulnerability
Published 2025-03-11 · Analyzed
7.5EPSS 0.007
CVE-2026-42993
Remote Desktop Client Remote Code Execution Vulnerability
Published 2026-06-09 · Analyzed
7.5EPSS 0.006
CVE-2026-69397
Microsoft OpenSSH for Windows Remote Code Execution Vulnerability
Published 2026-09-08 · Analyzed
7.5EPSS 0.006
CVE-2026-47654
Remote Desktop Client Remote Code Execution Vulnerability
Published 2026-06-09 · Modified
7.5EPSS 0.006
CVE-2026-44801
Remote Desktop Client Remote Code Execution Vulnerability
Published 2026-06-09 · Modified
7.5EPSS 0.006
CVE-2026-69607
Windows Deployment Services Remote Code Execution Vulnerability
Published 2026-09-08 · Analyzed
7.5EPSS 0.006
CVE-2026-48563
Remote Desktop Client Remote Code Execution Vulnerability
Published 2026-06-09 · Modified
7.5EPSS 0.006
CVE-2026-44799
Remote Desktop Client Remote Code Execution Vulnerability
Published 2026-06-09 · Analyzed
7.5EPSS 0.006
CVE-2026-42992
Remote Desktop Client Remote Code Execution Vulnerability
Published 2026-06-09 · Analyzed
7.5EPSS 0.006
CVE-2024-43450
Windows DNS Spoofing Vulnerability
Published 2024-11-12 · Analyzed
7.5EPSS 0.006
CVE-2026-69602
Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability
Published 2026-09-08 · Analyzed
7.5EPSS 0.006
CVE-2026-69761
Windows TCP/IP Elevation of Privilege Vulnerability
Published 2026-09-08 · Analyzed
7.5EPSS 0.006
CVE-2026-69757
Windows TCP/IP Elevation of Privilege Vulnerability
Published 2026-09-08 · Analyzed
7.5EPSS 0.006
CVE-2026-69688
Windows Encrypting File System (EFS) Elevation of Privilege Vulnerability
Published 2026-09-08 · Analyzed
7.5EPSS 0.006
← Prev63 / 101Next →