Known vulnerabilities in Windows Server 2012 Gold - page 30

Vendor: Microsoft
Version: 2012 Gold
Software CPE: cpe:2.3:o:microsoft:windows_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 906
Public exploits: 21
Known exploited (KEV): 26
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Windows Server version 2012 Gold Windows Server 2012 Gold is affected by 906 vulnerabilities: 7 critical, 175 high, 142 medium, 581 low Critical High Medium Low

Vulnerabilities (906)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU102779 - Exposure of sensitive information to an unauthorized actor
CVE-2025-21336
CWE-200 Low
No
No
2008 R2 6.1.7601.27520, 2008 6.0.6003.23070, 2012 R2 6.3.9600.22371, 2012 6.2.9200.25273, 2016 10.0.14393.7785, 2022 23H2 10.0.25398.1369, 2022 10.0.20348.3091, 2025 10.0.26100.2894 15.01.2025 SB2025011525
#VU102777 - Use After Free
CVE-2025-21296
CWE-416 Medium
No
No
2008 R2 6.1.7601.27520, 2012 R2 6.3.9600.22371, 2012 6.2.9200.25273, 2016 10.0.14393.7785, 2022 23H2 10.0.25398.1369, 2022 10.0.20348.3091, 2025 10.0.26100.2894 15.01.2025 SB2025011522
#VU102751 - Resource exhaustion
CVE-2025-21300
CWE-400 Medium
No
No
2008 R2 6.1.7601.27520, 2008 6.0.6003.23070, 2012 R2 6.3.9600.22371, 2012 6.2.9200.25273, 2016 10.0.14393.7785, 2022 23H2 10.0.25398.1369, 2022 10.0.20348.3091, 2025 10.0.26100.2894 14.01.2025 SB20250114117
#VU102750 - Resource exhaustion
CVE-2025-21389
CWE-400 Medium
No
No
2008 R2 6.1.7601.27520, 2008 6.0.6003.23070, 2012 R2 6.3.9600.22371, 2012 6.2.9200.25273, 2016 10.0.14393.7785, 2022 23H2 10.0.25398.1369, 2022 10.0.20348.3091, 2025 10.0.26100.2894 14.01.2025 SB20250114117
#VU102748 - Use of Uninitialized Resource
CVE-2025-21312
CWE-908 Low
No
No
2012 R2 6.3.9600.22371, 2012 6.2.9200.25273, 2016 10.0.14393.7785, 2022 23H2 10.0.25398.1369, 2022 10.0.20348.3091 14.01.2025 SB20250114115
#VU102747 - Exposure of sensitive information to an unauthorized actor
CVE-2025-21242
CWE-200 Medium
No
No
2008 R2 6.1.7601.27520, 2012 R2 6.3.9600.22371, 2012 6.2.9200.25273, 2016 10.0.14393.7785, 2022 23H2 10.0.25398.1369, 2022 10.0.20348.3091, 2025 10.0.26100.2894 14.01.2025 SB20250114114
#VU102745 - Resource exhaustion
CVE-2025-21218
CWE-400 Medium
No
No
2012 R2 6.3.9600.22371, 2012 6.2.9200.25273, 2016 10.0.14393.7699, 2016 10.0.14393.7785, 2019 10.0.17763.6775, 2022 23H2 10.0.25398.1369, 2022 10.0.20348.3091, 2025 10.0.26100.2894 14.01.2025 SB20250114114
#VU102737 - Use After Free
CVE-2025-21297
CWE-416 High
No
No
2008 R2 6.1.7601.27520, 2012 R2 6.3.9600.22371, 2012 6.2.9200.25273, 2016 10.0.14393.7699, 2016 10.0.14393.7785, 2019 10.0.17763.6775, 2022 23H2 10.0.25398.1369, 2022 10.0.20348.3091, 2025 10.0.26100.2894 14.01.2025 SB2025011494
#VU102735 - Sensitive Data Storage in Improperly Locked Memory
CVE-2025-21309
CWE-591 High
No
No
2012 R2 6.3.9600.22371, 2012 6.2.9200.25273, 2016 10.0.14393.7699, 2016 10.0.14393.7785, 2019 10.0.17763.6775, 2022 23H2 10.0.25398.1369, 2022 10.0.20348.3091, 2025 10.0.26100.2894 14.01.2025 SB2025011494
#VU102731 - Protection Mechanism Failure
CVE-2025-21217
CWE-693 Medium
No
No
2008 R2 6.1.7601.27520, 2008 6.0.6003.23070, 2012 R2 6.3.9600.22371, 2012 6.2.9200.25273, 2016 10.0.14393.7785, 2022 23H2 10.0.25398.1369, 2022 10.0.20348.3091, 2025 10.0.26100.2894 14.01.2025 SB2025011492
#VU102728 - Sensitive Data Storage in Improperly Locked Memory
CVE-2025-21294
CWE-591 High
No
No
2008 R2 6.1.7601.27520, 2008 6.0.6003.23070, 2012 R2 6.3.9600.22371, 2012 6.2.9200.25273, 2016 10.0.14393.7785, 2022 23H2 10.0.25398.1369, 2022 10.0.20348.3091, 2025 10.0.26100.2894 14.01.2025 SB2025011491
#VU102727 - Use After Free
CVE-2025-21281
CWE-416 Low
No
No
2012 R2 6.3.9600.22371, 2012 6.2.9200.25273, 2016 10.0.14393.7785, 2022 23H2 10.0.25398.1369, 2022 10.0.20348.3091, 2025 10.0.26100.2894 14.01.2025 SB2025011490
#VU102713 - Use of Uninitialized Resource
CVE-2025-21272
CWE-908 Low
No
No
2008 R2 6.1.7601.27520, 2008 6.0.6003.23070, 2012 R2 6.3.9600.22371, 2012 6.2.9200.25273, 2016 10.0.14393.7785, 2022 23H2 10.0.25398.1369, 2022 10.0.20348.3091, 2025 10.0.26100.2894 14.01.2025 SB2025011483
#VU102711 - Use of Uninitialized Resource
CVE-2025-21288
CWE-908 Low
No
No
2008 R2 6.1.7601.27520, 2008 6.0.6003.23070, 2012 R2 6.3.9600.22371, 2012 6.2.9200.25273, 2016 10.0.14393.7785, 2022 23H2 10.0.25398.1369, 2022 10.0.20348.3091, 2025 10.0.26100.2894 14.01.2025 SB2025011483
#VU102708 - Heap-based Buffer Overflow
CVE-2025-21378
CWE-122 Low
No
No
2012 R2 6.3.9600.22371, 2012 6.2.9200.25273, 2016 10.0.14393.7785, 2022 23H2 10.0.25398.1369, 2022 10.0.20348.3091, 2025 10.0.26100.2894 14.01.2025 SB2025011478
#VU102707 - Out-of-bounds read
CVE-2025-21374
CWE-125 Low
No
No
2012 R2 6.3.9600.22371, 2012 6.2.9200.25273, 2016 10.0.14393.7785, 2022 23H2 10.0.25398.1369, 2022 10.0.20348.3091, 2025 10.0.26100.2894 14.01.2025 SB2025011478
#VU102702 - Improper Access Control
CVE-2025-21293
CWE-284 Medium
No
No
2012 R2 6.3.9600.22371, 2012 6.2.9200.25273, 2016 10.0.14393.7785, 2022 23H2 10.0.25398.1369, 2022 10.0.20348.3091, 2025 10.0.26100.2894 14.01.2025 SB2025011474
#VU102700 - Exposure of sensitive information to an unauthorized actor
CVE-2025-21214
CWE-200 Low
No
No
2008 R2 6.1.7601.27520, 2008 6.0.6003.23070, 2012 R2 6.3.9600.22371, 2012 6.2.9200.25273, 2016 10.0.14393.7785, 2022 23H2 10.0.25398.1369, 2022 10.0.20348.3091, 2025 10.0.26100.2894 14.01.2025 SB2025011472
#VU102699 - Not Failing Securely (\'Failing Open\')
CVE-2025-21210
CWE-636 Low
No
No
2008 R2 6.1.7601.27520, 2008 6.0.6003.23070, 2012 R2 6.3.9600.22371, 2012 6.2.9200.25273, 2016 10.0.14393.7785, 2022 23H2 10.0.25398.1369, 2022 10.0.20348.3091, 2025 10.0.26100.2894 14.01.2025 SB2025011472
#VU102691 - Improper Link Resolution Before File Access ('Link Following')
CVE-2025-21331
CWE-59 Low
No
No
2008 R2 6.1.7601.27520, 2008 6.0.6003.23070, 2012 R2 6.3.9600.22371, 2012 6.2.9200.25273, 2016 10.0.14393.7785, 2022 23H2 10.0.25398.1369, 2022 10.0.20348.3091 14.01.2025 SB2025011467


Showing elements 581 - 600 out of 906