Known vulnerabilities in Windows Server - page 50

Vendor: Microsoft
Software CPE: cpe:2.3:o:microsoft:windows_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 6300
Public exploits: 488
Known exploited (KEV): 268
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Windows Server Windows Server is affected by 6300 known vulnerabilities: 95 critical, 1270 high, 1244 medium, 3689 low Critical High Medium Low

Vulnerabilities (6300)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU117160 - Use After Free
CVE-2025-58718
CWE-416 High
No
No
2008 R2 6.1.7601.27974, 2008 6.0.6003.23571, 2012 R2 6.3.9600.22824, 2012 6.2.9200.25722, 2016 10.0.14393.8519, 2019 10.0.17763.7919, 2022 23H2 10.0.25398.1913, 2022 10.0.20348.4294, 2025 10.0.26100.6899 15.10.2025 SB2025101514
#VU117159 - Use of a Cryptographic Primitive with a Risky Implementation
CVE-2025-58720
CWE-1240 Low
No
No
2012 R2 6.3.9600.22824, 2019 10.0.17763.7919, 2022 23H2 10.0.25398.1913, 2022 10.0.20348.4294, 2025 10.0.26100.6899 15.10.2025 SB2025101513
#VU117158 - Improper Validation of Specified Type of Input
CVE-2025-59257
CWE-1287 Medium
No
No
2012 R2 6.3.9600.22824, 2022 23H2 10.0.25398.1913, 2025 10.0.26100.6899 15.10.2025 SB2025101512
#VU117157 - Improper Validation of Specified Type of Input
CVE-2025-59259
CWE-1287 Medium
No
No
2012 R2 6.3.9600.22824, 2012 6.2.9200.25722, 2016 10.0.14393.8519, 2019 10.0.17763.7919, 2022 23H2 10.0.25398.1913, 2022 10.0.20348.4294, 2025 10.0.26100.6899 15.10.2025 SB2025101512
#VU117156 - Improper Validation of Specified Type of Input
CVE-2025-58729
CWE-1287 Medium
No
No
2008 R2 6.1.7601.27974, 2008 6.0.6003.23571, 2012 R2 6.3.9600.22824, 2012 6.2.9200.25722, 2016 10.0.14393.8519, 2019 10.0.17763.7919, 2022 23H2 10.0.25398.1913, 2022 10.0.20348.4294, 2025 10.0.26100.6899 15.10.2025 SB2025101512
#VU117155 - Exposure of sensitive information to an unauthorized actor
CVE-2025-59214
CWE-200 Medium
No
No
2008 R2 6.1.7601.27974, 2008 6.0.6003.23571, 2012 R2 6.3.9600.22824, 2012 6.2.9200.25722, 2016 10.0.14393.8519, 2019 10.0.17763.7919, 2022 23H2 10.0.25398.1913, 2022 10.0.20348.4294, 2025 10.0.26100.6899 15.10.2025 SB2025101511
#VU117154 - Exposure of sensitive information to an unauthorized actor
CVE-2025-58739
CWE-200 Medium
No
No
2008 R2 6.1.7601.27974, 2008 6.0.6003.23571, 2012 R2 6.3.9600.22824, 2012 6.2.9200.25722, 2016 10.0.14393.8519, 2019 10.0.17763.7919, 2022 23H2 10.0.25398.1913, 2022 10.0.20348.4294, 2025 10.0.26100.6899 15.10.2025 SB2025101511
#VU117153 - Exposure of sensitive information to an unauthorized actor
CVE-2025-59184
CWE-200 Low
No
No
2012 R2 6.3.9600.22824, 2016 10.0.14393.8519, 2019 10.0.17763.7919, 2022 23H2 10.0.25398.1913, 2022 10.0.20348.4294, 2025 10.0.26100.6899 15.10.2025 SB2025101510
#VU117152 - Information Exposure Through Log Files
CVE-2025-47979
CWE-532 Low
No
No
2012 R2 6.3.9600.22824, 2022 23H2 10.0.25398.1913, 2025 10.0.26100.6899 15.10.2025 SB2025101509
#VU117151 - Exposure of sensitive information to an unauthorized actor
CVE-2025-59188
CWE-200 Low
No
No
2012 R2 6.3.9600.22824, 2012 6.2.9200.25722, 2016 10.0.14393.8519, 2019 10.0.17763.7919, 2022 23H2 10.0.25398.1913, 2022 10.0.20348.4294, 2025 10.0.26100.6899 15.10.2025 SB2025101509
#VU117150 - Use After Free
CVE-2025-48004
CWE-416 Low
No
No
2012 R2 6.3.9600.22774, 2022 23H2 10.0.25398.1913, 2025 10.0.26100.6899 15.10.2025 SB2025101508
#VU117149 - Use After Free
CVE-2025-59189
CWE-416 Low
No
No
2012 R2 6.3.9600.22824, 2025 10.0.26100.6899 15.10.2025 SB2025101508
#VU117147 - Heap-based Buffer Overflow
CVE-2025-59191
CWE-122 Low
No
No
2012 R2 6.3.9600.22824, 2019 10.0.17763.7919, 2022 23H2 10.0.25398.1913, 2022 10.0.20348.4294, 2025 10.0.26100.6899 15.10.2025 SB2025101506
#VU117145 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2025-58727
CWE-362 Low
No
No
2012 R2 6.3.9600.22824, 2022 23H2 10.0.25398.1913, 2025 10.0.26100.6899 15.10.2025 SB2025101506
#VU117137 - Use After Free
CVE-2025-58719
CWE-416 Low
No
No
2012 R2 6.3.9600.22824, 2016 10.0.14393.8519, 2019 10.0.17763.7919, 2022 23H2 10.0.25398.1913, 2022 10.0.20348.4294, 2025 10.0.26100.6899 14.10.2025 SB2025101506
#VU117131 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2025-59196
CWE-362 Low
No
No
2008 R2 6.1.7601.27974, 2008 6.0.6003.23571, 2012 R2 6.3.9600.22824, 2012 6.2.9200.25722, 2016 10.0.14393.8519, 2019 10.0.17763.7919, 2022 23H2 10.0.25398.1913, 2022 10.0.20348.4294, 2025 10.0.26100.6899 14.10.2025 SB20251014103
#VU117119 - Improper Access Control
CVE-2025-59199
CWE-284 Low
No
No
2012 R2 6.3.9600.22824, 2019 10.0.17763.7919, 2022 23H2 10.0.25398.1913, 2022 10.0.20348.4294, 2025 10.0.26100.6899 14.10.2025 SB20251014101
#VU117111 - Improper Access Control
CVE-2025-25004
CWE-284 Low
No
No
2008 R2 6.1.7601.27974, 2008 6.0.6003.23571, 2012 R2 6.3.9600.22824, 2012 6.2.9200.25722, 2016 10.0.14393.8519, 2019 10.0.17763.7919, 2022 23H2 10.0.25398.1913, 2022 10.0.20348.4294, 2025 10.0.26100.6899 14.10.2025 SB2025101497
#VU117109 - Improper Enforcement of Behavioral Workflow
CVE-2025-55682
CWE-841 Low
No
No
2012 R2 6.3.9600.22824, 2025 10.0.26100.6899 14.10.2025 SB2025101495
#VU117103 - Incomplete Comparison with Missing Factors
CVE-2025-55333
CWE-1023 Low
No
No
2012 R2 6.3.9600.22824, 2016 10.0.14393.8519, 2019 10.0.17763.7919, 2022 23H2 10.0.25398.1913, 2022 10.0.20348.4294, 2025 10.0.26100.6899 14.10.2025 SB2025101495


Showing elements 981 - 1000 out of 6300