Known vulnerabilities in Windows Server - page 57

Vendor: Microsoft
Software CPE: cpe:2.3:o:microsoft:windows_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 6300
Public exploits: 488
Known exploited (KEV): 268
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Windows Server Windows Server is affected by 6300 known vulnerabilities: 95 critical, 1270 high, 1244 medium, 3689 low Critical High Medium Low

Vulnerabilities (6300)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU115014 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2025-54092
CWE-362 Low
No
No
2012 R2 6.3.9600.22774, 2019 10.0.17763.7792, 2022 23H2 10.0.25398.1849, 2022 10.0.20348.4106, 2022 10.0.20348.4171, 2025 10.0.26100.6508, 2025 10.0.26100.6584 09.09.2025 SB2025090960
#VU114366 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2025-55231
CWE-362 High
No
No
2012 R2 6.3.9600.22767, 2016 10.0.14393.8416, 2019 10.0.17763.7783, 2022 10.0.20348.4161, 2025 10.0.26100.6563 22.08.2025 SB2025082210
#VU114365 - Improper Verification of Cryptographic Signature
CVE-2025-55229
CWE-347 Medium
No
No
2012 R2 6.3.9600.22767, 2016 10.0.14393.8416, 2019 10.0.17763.7783, 2022 23H2 10.0.25398.1840, 2022 10.0.20348.4161, 2025 10.0.26100.6563 22.08.2025 SB2025082209
#VU114363 - Untrusted Pointer Dereference
CVE-2025-55230
CWE-822 Low
No
No
2008 R2 6.1.7601.27924, 2008 6.0.6003.23524, 2012 R2 6.3.9600.22767, 2012 6.2.9200.25669, 2016 10.0.14393.8416, 2019 10.0.17763.7783, 2022 23H2 10.0.25398.1840, 2022 10.0.20348.4161, 2025 10.0.26100.6563 22.08.2025 SB2025082208
#VU114051 - Missing Authentication for Critical Function
CVE-2025-53789
CWE-306 Low
No
No
2012 R2 6.3.9600.22725, 2016 10.0.14393.8246, 2019 10.0.17763.7558, 2022 23H2 10.0.25398.1732, 2022 10.0.20348.3932, 2025 10.0.26100.4652 13.08.2025 SB20250813100
#VU114035 - Permissions, Privileges, and Access Controls
CVE-2025-50170
CWE-264 Low
No
No
2012 R2 6.3.9600.22725, 2019 10.0.17763.7678, 2022 23H2 10.0.25398.1791, 2022 10.0.20348.3989, 2022 10.0.20348.4052, 2025 10.0.26100.4851, 2025 10.0.26100.4946 13.08.2025 SB2025081387
#VU114028 - Missing Authorization
CVE-2025-50171
CWE-862 High
No
No
2012 R2 6.3.9600.22725, 2022 23H2 10.0.25398.1791, 2022 10.0.20348.3989, 2022 10.0.20348.4052, 2025 10.0.26100.4851, 2025 10.0.26100.4946 13.08.2025 SB2025081382
#VU114027 - Exposure of sensitive information to an unauthorized actor
CVE-2025-53136
CWE-200 Low
Available
No
2008 R2 6.1.7601.27872, 2008 6.0.6003.23471, 2012 R2 6.3.9600.22725, 2012 6.2.9200.25622, 2016 10.0.14393.8330, 2019 10.0.17763.7678, 2022 23H2 10.0.25398.1791, 2022 10.0.20348.3989, 2022 10.0.20348.4052, 2025 10.0.26100.4851, 2025 10.0.26100.4946 13.08.2025 SB2025081381
#VU114011 - Use After Free
CVE-2025-53151
CWE-416 Low
No
No
2012 R2 6.3.9600.22725, 2019 10.0.17763.7678, 2022 23H2 10.0.25398.1791, 2022 10.0.20348.3989, 2022 10.0.20348.4052, 2025 10.0.26100.4851, 2025 10.0.26100.4946 13.08.2025 SB2025081358
#VU114010 - Use After Free
CVE-2025-49761
CWE-416 Low
No
No
2008 R2 6.1.7601.27872, 2012 R2 6.3.9600.22725, 2012 6.2.9200.25622, 2016 10.0.14393.8330, 2019 10.0.17763.7678, 2022 23H2 10.0.25398.1791, 2022 10.0.20348.3989, 2022 10.0.20348.4052, 2025 10.0.26100.4851, 2025 10.0.26100.4946 13.08.2025 SB2025081358
#VU114009 - Exposure of sensitive information to an unauthorized actor
CVE-2025-53156
CWE-200 Low
No
No
2012 R2 6.3.9600.22725, 2022 23H2 10.0.25398.1791, 2025 10.0.26100.4851, 2025 10.0.26100.4946 13.08.2025 SB2025081357
#VU114007 - Heap-based Buffer Overflow
CVE-2025-53766
CWE-122 High
No
No
2008 R2 6.1.7601.27872, 2008 6.0.6003.23471, 2012 R2 6.3.9600.22725, 2012 6.2.9200.25622, 2016 10.0.14393.8330, 2019 10.0.17763.7678, 2022 23H2 10.0.25398.1791, 2022 10.0.20348.3989, 2022 10.0.20348.4052, 2025 10.0.26100.4851, 2025 10.0.26100.4946 13.08.2025 SB2025081355
#VU114004 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2025-53779
CWE-22 Low
Available
No
2012 R2 6.3.9600.22725, 2025 10.0.26100.4851, 2025 10.0.26100.4946 13.08.2025 SB2025081352
#VU114003 - Improper Authentication
CVE-2025-53778
CWE-287 Medium
No
No
2008 R2 6.1.7601.27872, 2008 6.0.6003.23471, 2012 R2 6.3.9600.22725, 2012 6.2.9200.25622, 2016 10.0.14393.8330, 2019 10.0.17763.7678, 2022 23H2 10.0.25398.1791, 2022 10.0.20348.3989, 2022 10.0.20348.4052, 2025 10.0.26100.4851, 2025 10.0.26100.4946 13.08.2025 SB2025081351
#VU114002 - Resource exhaustion
CVE-2025-53722
CWE-400 Medium
No
No
2008 R2 6.1.7601.27872, 2012 R2 6.3.9600.22725, 2012 6.2.9200.25622, 2016 10.0.14393.8330, 2019 10.0.17763.7678, 2022 23H2 10.0.25398.1791, 2022 10.0.20348.3989, 2022 10.0.20348.4052, 2025 10.0.26100.4851, 2025 10.0.26100.4946 13.08.2025 SB2025081350
#VU114001 - Heap-based Buffer Overflow
CVE-2025-53131
CWE-122 High
No
No
2012 R2 6.3.9600.22725, 2019 10.0.17763.7678, 2022 23H2 10.0.25398.1791, 2022 10.0.20348.3989, 2022 10.0.20348.4052, 2025 10.0.26100.4851, 2025 10.0.26100.4946 13.08.2025 SB2025081346
#VU114000 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2025-50169
CWE-362 High
No
No
2012 R2 6.3.9600.22725, 2025 10.0.26100.4851, 2025 10.0.26100.4946 13.08.2025 SB2025081345
#VU113999 - Exposure of sensitive information to an unauthorized actor
CVE-2025-50154
CWE-200 Medium
Available
No
2008 R2 6.1.7601.27872, 2008 6.0.6003.23471, 2012 R2 6.3.9600.22725, 2012 6.2.9200.25622, 2016 10.0.14393.8330, 2019 10.0.17763.7678, 2022 23H2 10.0.25398.1791, 2022 10.0.20348.3989, 2022 10.0.20348.4052, 2025 10.0.26100.4851, 2025 10.0.26100.4946 13.08.2025 SB2025081340
#VU113997 - Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2025-50158
CWE-367 Low
No
No
2008 R2 6.1.7601.27872, 2008 6.0.6003.23471, 2012 R2 6.3.9600.22725, 2012 6.2.9200.25622, 2016 10.0.14393.8330, 2019 10.0.17763.7678, 2022 23H2 10.0.25398.1791, 2022 10.0.20348.3989, 2022 10.0.20348.4052, 2025 10.0.26100.4851, 2025 10.0.26100.4946 13.08.2025 SB2025081335
#VU113993 - Use After Free
CVE-2025-50159
CWE-416 Low
No
No
2012 R2 6.3.9600.22725, 2012 6.2.9200.25622, 2016 10.0.14393.8330, 2019 10.0.17763.7678, 2022 23H2 10.0.25398.1791, 2022 10.0.20348.3989, 2022 10.0.20348.4052, 2025 10.0.26100.4851, 2025 10.0.26100.4946 13.08.2025 SB2025081327


Showing elements 1121 - 1140 out of 6300