Known vulnerabilities in Windows Server - page 46

Vendor: Microsoft
Software CPE: cpe:2.3:o:microsoft:windows_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 6300
Public exploits: 488
Known exploited (KEV): 268
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Windows Server Windows Server is affected by 6300 known vulnerabilities: 95 critical, 1270 high, 1244 medium, 3689 low Critical High Medium Low

Vulnerabilities (6300)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU118313 - Use After Free
CVE-2025-60707
CWE-416 Low
No
No
2008 R2 6.1.7601.28021, 2019 10.0.17763.8027, 2022 23H2 10.0.25398.1965, 2022 10.0.20348.4346, 2022 10.0.20348.4405, 2025 10.0.26100.7092, 2025 10.0.26100.7171 11.11.2025 SB2025111177
#VU118312 - Improper Access Control
CVE-2025-60705
CWE-284 Low
No
No
2008 R2 6.1.7601.28021, 2008 6.0.6003.23624, 2012 R2 6.3.9600.22869, 2012 6.2.9200.25768, 2016 10.0.14393.8594, 2019 10.0.17763.8027, 2022 23H2 10.0.25398.1965, 2022 10.0.20348.4346, 2022 10.0.20348.4405, 2025 10.0.26100.7092, 2025 10.0.26100.7171 11.11.2025 SB2025111176
#VU118309 - Missing Required Cryptographic Step
CVE-2025-60704
CWE-325 High
No
No
2008 R2 6.1.7601.28021, 2008 6.0.6003.23624, 2012 R2 6.3.9600.22869, 2012 6.2.9200.25768, 2016 10.0.14393.8594, 2019 10.0.17763.8027, 2022 23H2 10.0.25398.1965, 2022 10.0.20348.4346, 2022 10.0.20348.4405, 2025 10.0.26100.7092, 2025 10.0.26100.7171 11.11.2025 SB2025111175
#VU118306 - Untrusted Pointer Dereference
CVE-2025-60703
CWE-822 Low
No
No
2008 R2 6.1.7601.28021, 2008 6.0.6003.23624, 2012 R2 6.3.9600.22869, 2012 6.2.9200.25768, 2016 10.0.14393.8594, 2019 10.0.17763.8027, 2022 23H2 10.0.25398.1965, 2022 10.0.20348.4346, 2022 10.0.20348.4405, 2025 10.0.26100.7092, 2025 10.0.26100.7171 11.11.2025 SB2025111172
#VU118304 - Out-of-bounds read
CVE-2025-59513
CWE-125 Low
No
No
2008 R2 6.1.7601.28021, 2008 6.0.6003.23624, 2012 R2 6.3.9600.22869, 2016 10.0.14393.8594, 2019 10.0.17763.8027, 2022 23H2 10.0.25398.1965, 2022 10.0.20348.4346, 2022 10.0.20348.4405, 2025 10.0.26100.7092, 2025 10.0.26100.7171 11.11.2025 SB2025111170
#VU118303 - Improper Access Control
CVE-2025-59512
CWE-284 Low
No
No
2012 R2 6.3.9600.22869, 2012 6.2.9200.25768, 2016 10.0.14393.8594, 2019 10.0.17763.8027, 2022 23H2 10.0.25398.1965, 2022 10.0.20348.4346, 2022 10.0.20348.4405, 2025 10.0.26100.7092, 2025 10.0.26100.7171 11.11.2025 SB2025111169
#VU118302 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2025-62215
CWE-362 High
Available
Exploited
2008 R2 6.1.7601.28021, 2019 10.0.17763.8027, 2022 23H2 10.0.25398.1965, 2022 10.0.20348.4346, 2022 10.0.20348.4405, 2025 10.0.26100.7092, 2025 10.0.26100.7171 11.11.2025 SB2025111168
#VU118301 - External Control of File Name or Path
CVE-2025-59511
CWE-73 Low
No
No
2012 R2 6.3.9600.22869, 2019 10.0.17763.8027, 2022 23H2 10.0.25398.1965, 2022 10.0.20348.4346, 2022 10.0.20348.4405, 2025 10.0.26100.7092, 2025 10.0.26100.7171 11.11.2025 SB2025111167
#VU118300 - Insertion of Sensitive Information Into Sent Data
CVE-2025-59509
CWE-201 Low
No
No
2012 R2 6.3.9600.22869, 2019 10.0.17763.8027, 2022 23H2 10.0.25398.1965, 2022 10.0.20348.4346, 2022 10.0.20348.4405, 2025 10.0.26100.7092, 2025 10.0.26100.7171 11.11.2025 SB2025111166
#VU118299 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2025-59508
CWE-362 Low
No
No
2012 R2 6.3.9600.22869, 2016 10.0.14393.8594, 2019 10.0.17763.8027, 2022 23H2 10.0.25398.1965, 2022 10.0.20348.4346, 2022 10.0.20348.4405, 2025 10.0.26100.7092, 2025 10.0.26100.7171 11.11.2025 SB2025111166
#VU118298 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2025-59507
CWE-362 Low
No
No
2012 R2 6.3.9600.22869, 2016 10.0.14393.8594, 2019 10.0.17763.8027, 2022 23H2 10.0.25398.1965, 2022 10.0.20348.4346, 2022 10.0.20348.4405, 2025 10.0.26100.7092, 2025 10.0.26100.7171 11.11.2025 SB2025111165
#VU118297 - Double Free
CVE-2025-59505
CWE-415 Low
No
No
2012 R2 6.3.9600.22869, 2012 6.2.9200.25768, 2016 10.0.14393.8594, 2019 10.0.17763.8027, 2022 23H2 10.0.25398.1965, 2022 10.0.20348.4346, 2022 10.0.20348.4405, 2025 10.0.26100.7092, 2025 10.0.26100.7171 11.11.2025 SB2025111164
#VU118296 - Out-of-bounds read
CVE-2025-60706
CWE-125 Low
No
No
2008 R2 6.1.7601.28021, 2016 10.0.14393.8594, 2019 10.0.17763.8027, 2022 23H2 10.0.25398.1965, 2022 10.0.20348.4346, 2022 10.0.20348.4405, 2025 10.0.26100.7092, 2025 10.0.26100.7171 11.11.2025 SB2025111163
#VU118295 - Use After Free
CVE-2025-60717
CWE-416 Low
No
No
2008 R2 6.1.7601.28021, 2019 10.0.17763.8027, 2022 23H2 10.0.25398.1965, 2025 10.0.26100.7092, 2025 10.0.26100.7171 11.11.2025 SB2025111162
#VU118294 - Use After Free
CVE-2025-59515
CWE-416 Low
No
No
2008 R2 6.1.7601.28021, 2019 10.0.17763.8027, 2022 23H2 10.0.25398.1965, 2025 10.0.26100.7092, 2025 10.0.26100.7171 11.11.2025 SB2025111162
#VU118292 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2025-62217
CWE-362 Low
No
No
2008 R2 6.1.7601.28021, 2008 6.0.6003.23624, 2012 R2 6.3.9600.22869, 2012 6.2.9200.25768, 2016 10.0.14393.8594, 2019 10.0.17763.8027, 2022 23H2 10.0.25398.1965, 2022 10.0.20348.4346, 2022 10.0.20348.4405, 2025 10.0.26100.7092, 2025 10.0.26100.7171 11.11.2025 SB2025111159
#VU118291 - Untrusted Pointer Dereference
CVE-2025-60719
CWE-822 Low
No
No
2008 R2 6.1.7601.28021, 2008 6.0.6003.23624, 2012 R2 6.3.9600.22869, 2012 6.2.9200.25768, 2016 10.0.14393.8594, 2019 10.0.17763.8027, 2022 23H2 10.0.25398.1965, 2022 10.0.20348.4346, 2022 10.0.20348.4405, 2025 10.0.26100.7092, 2025 10.0.26100.7171 11.11.2025 SB2025111159
#VU118290 - Use After Free
CVE-2025-62213
CWE-416 Low
No
No
2008 R2 6.1.7601.28021, 2008 6.0.6003.23624, 2012 R2 6.3.9600.22869, 2012 6.2.9200.25768, 2016 10.0.14393.8594, 2019 10.0.17763.8027, 2022 23H2 10.0.25398.1965, 2022 10.0.20348.4346, 2022 10.0.20348.4405, 2025 10.0.26100.7092, 2025 10.0.26100.7171 11.11.2025 SB2025111159
#VU118287 - Information Exposure Through Log Files
CVE-2025-62209
CWE-532 Low
No
No
2008 R2 6.1.7601.28021, 2016 10.0.14393.8519, 2019 10.0.17763.7919, 2022 23H2 10.0.25398.1913, 2022 10.0.20348.4294, 2025 10.0.26100.6899 11.11.2025 SB2025111156
#VU118286 - Information Exposure Through Log Files
CVE-2025-62208
CWE-532 Low
No
No
2008 R2 6.1.7601.28021, 2016 10.0.14393.8519, 2019 10.0.17763.7919, 2022 23H2 10.0.25398.1913, 2022 10.0.20348.4294, 2025 10.0.26100.6899 11.11.2025 SB2025111156


Showing elements 901 - 920 out of 6300