Known vulnerabilities in Windows Server 2025 10.0.26100.2605 - page 56

Vendor: Microsoft
Version: 2025 10.0.26100.2605
Software CPE: cpe:2.3:o:microsoft:windows_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 1627
Public exploits: 49
Known exploited (KEV): 38
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Windows Server version 2025 10.0.26100.2605 Windows Server 2025 10.0.26100.2605 is affected by 1627 vulnerabilities: 7 critical, 263 high, 300 medium, 1056 low Critical High Medium Low

Vulnerabilities (1627)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU115021 - Type confusion
CVE-2025-53810
CWE-843 Low
No
No
2008 R2 6.1.7601.27929, 2008 6.0.6003.23529, 2012 R2 6.3.9600.22774, 2012 6.2.9200.25675, 2016 10.0.14393.8422, 2019 10.0.17763.7792, 2022 23H2 10.0.25398.1849, 2022 10.0.20348.4106, 2022 10.0.20348.4171, 2025 10.0.26100.6508, 2025 10.0.26100.6584 09.09.2025 SB2025090962
#VU115017 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2025-54115
CWE-362 Low
No
No
2012 R2 6.3.9600.22774, 2019 10.0.17763.7792, 2022 23H2 10.0.25398.1849, 2022 10.0.20348.4106, 2022 10.0.20348.4171, 2025 10.0.26100.6508, 2025 10.0.26100.6584 09.09.2025 SB2025090960
#VU115016 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2025-55224
CWE-362 Medium
No
No
2012 R2 6.3.9600.22774, 2019 10.0.17763.7792, 2022 23H2 10.0.25398.1849, 2022 10.0.20348.4106, 2022 10.0.20348.4171, 2025 10.0.26100.6508, 2025 10.0.26100.6584 09.09.2025 SB2025090960
#VU115015 - Integer overflow
CVE-2025-54091
CWE-190 Low
No
No
2012 R2 6.3.9600.22774, 2012 6.2.9200.25675, 2016 10.0.14393.8422, 2019 10.0.17763.7792, 2022 23H2 10.0.25398.1849, 2022 10.0.20348.4106, 2022 10.0.20348.4171, 2025 10.0.26100.6508, 2025 10.0.26100.6584 09.09.2025 SB2025090960
#VU115014 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2025-54092
CWE-362 Low
No
No
2012 R2 6.3.9600.22774, 2019 10.0.17763.7792, 2022 23H2 10.0.25398.1849, 2022 10.0.20348.4106, 2022 10.0.20348.4171, 2025 10.0.26100.6508, 2025 10.0.26100.6584 09.09.2025 SB2025090960
#VU115013 - Improper Access Control
CVE-2025-54098
CWE-284 Low
No
No
2008 R2 6.1.7601.27929, 2012 R2 6.3.9600.22774, 2012 6.2.9200.25675, 2016 10.0.14393.8422, 2019 10.0.17763.7792, 2022 23H2 10.0.25398.1849, 2022 10.0.20348.4106, 2022 10.0.20348.4171, 2025 10.0.26100.6508, 2025 10.0.26100.6584 09.09.2025 SB2025090960
#VU114366 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2025-55231
CWE-362 High
No
No
2012 R2 6.3.9600.22767, 2016 10.0.14393.8416, 2019 10.0.17763.7783, 2022 10.0.20348.4161, 2025 10.0.26100.6563 22.08.2025 SB2025082210
#VU114365 - Improper Verification of Cryptographic Signature
CVE-2025-55229
CWE-347 Medium
No
No
2012 R2 6.3.9600.22767, 2016 10.0.14393.8416, 2019 10.0.17763.7783, 2022 23H2 10.0.25398.1840, 2022 10.0.20348.4161, 2025 10.0.26100.6563 22.08.2025 SB2025082209
#VU114363 - Untrusted Pointer Dereference
CVE-2025-55230
CWE-822 Low
No
No
2008 R2 6.1.7601.27924, 2008 6.0.6003.23524, 2012 R2 6.3.9600.22767, 2012 6.2.9200.25669, 2016 10.0.14393.8416, 2019 10.0.17763.7783, 2022 23H2 10.0.25398.1840, 2022 10.0.20348.4161, 2025 10.0.26100.6563 22.08.2025 SB2025082208
#VU114051 - Missing Authentication for Critical Function
CVE-2025-53789
CWE-306 Low
No
No
2012 R2 6.3.9600.22725, 2016 10.0.14393.8246, 2019 10.0.17763.7558, 2022 23H2 10.0.25398.1732, 2022 10.0.20348.3932, 2025 10.0.26100.4652 13.08.2025 SB20250813100
#VU114035 - Permissions, Privileges, and Access Controls
CVE-2025-50170
CWE-264 Low
No
No
2012 R2 6.3.9600.22725, 2019 10.0.17763.7678, 2022 23H2 10.0.25398.1791, 2022 10.0.20348.3989, 2022 10.0.20348.4052, 2025 10.0.26100.4851, 2025 10.0.26100.4946 13.08.2025 SB2025081387
#VU114028 - Missing Authorization
CVE-2025-50171
CWE-862 High
No
No
2012 R2 6.3.9600.22725, 2022 23H2 10.0.25398.1791, 2022 10.0.20348.3989, 2022 10.0.20348.4052, 2025 10.0.26100.4851, 2025 10.0.26100.4946 13.08.2025 SB2025081382
#VU114027 - Exposure of sensitive information to an unauthorized actor
CVE-2025-53136
CWE-200 Low
Public exploit available
No
2008 R2 6.1.7601.27872, 2008 6.0.6003.23471, 2012 R2 6.3.9600.22725, 2012 6.2.9200.25622, 2016 10.0.14393.8330, 2019 10.0.17763.7678, 2022 23H2 10.0.25398.1791, 2022 10.0.20348.3989, 2022 10.0.20348.4052, 2025 10.0.26100.4851, 2025 10.0.26100.4946 13.08.2025 SB2025081381
#VU114011 - Use After Free
CVE-2025-53151
CWE-416 Low
No
No
2012 R2 6.3.9600.22725, 2019 10.0.17763.7678, 2022 23H2 10.0.25398.1791, 2022 10.0.20348.3989, 2022 10.0.20348.4052, 2025 10.0.26100.4851, 2025 10.0.26100.4946 13.08.2025 SB2025081358
#VU114010 - Use After Free
CVE-2025-49761
CWE-416 Low
No
No
2008 R2 6.1.7601.27872, 2012 R2 6.3.9600.22725, 2012 6.2.9200.25622, 2016 10.0.14393.8330, 2019 10.0.17763.7678, 2022 23H2 10.0.25398.1791, 2022 10.0.20348.3989, 2022 10.0.20348.4052, 2025 10.0.26100.4851, 2025 10.0.26100.4946 13.08.2025 SB2025081358
#VU114009 - Exposure of sensitive information to an unauthorized actor
CVE-2025-53156
CWE-200 Low
No
No
2012 R2 6.3.9600.22725, 2022 23H2 10.0.25398.1791, 2025 10.0.26100.4851, 2025 10.0.26100.4946 13.08.2025 SB2025081357
#VU114007 - Heap-based Buffer Overflow
CVE-2025-53766
CWE-122 High
No
No
2008 R2 6.1.7601.27872, 2008 6.0.6003.23471, 2012 R2 6.3.9600.22725, 2012 6.2.9200.25622, 2016 10.0.14393.8330, 2019 10.0.17763.7678, 2022 23H2 10.0.25398.1791, 2022 10.0.20348.3989, 2022 10.0.20348.4052, 2025 10.0.26100.4851, 2025 10.0.26100.4946 13.08.2025 SB2025081355
#VU114004 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2025-53779
CWE-22 Low
Public exploit available
No
2012 R2 6.3.9600.22725, 2025 10.0.26100.4851, 2025 10.0.26100.4946 13.08.2025 SB2025081352
#VU114003 - Improper Authentication
CVE-2025-53778
CWE-287 Medium
No
No
2008 R2 6.1.7601.27872, 2008 6.0.6003.23471, 2012 R2 6.3.9600.22725, 2012 6.2.9200.25622, 2016 10.0.14393.8330, 2019 10.0.17763.7678, 2022 23H2 10.0.25398.1791, 2022 10.0.20348.3989, 2022 10.0.20348.4052, 2025 10.0.26100.4851, 2025 10.0.26100.4946 13.08.2025 SB2025081351
#VU114002 - Resource exhaustion
CVE-2025-53722
CWE-400 Medium
No
No
2008 R2 6.1.7601.27872, 2012 R2 6.3.9600.22725, 2012 6.2.9200.25622, 2016 10.0.14393.8330, 2019 10.0.17763.7678, 2022 23H2 10.0.25398.1791, 2022 10.0.20348.3989, 2022 10.0.20348.4052, 2025 10.0.26100.4851, 2025 10.0.26100.4946 13.08.2025 SB2025081350


Showing elements 1101 - 1120 out of 1627