Known vulnerabilities in Windows Server - page 60

Vendor: Microsoft
Software CPE: cpe:2.3:o:microsoft:windows_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 6300
Public exploits: 488
Known exploited (KEV): 268
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Windows Server Windows Server is affected by 6300 known vulnerabilities: 95 critical, 1270 high, 1244 medium, 3689 low Critical High Medium Low

Vulnerabilities (6300)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU113865 - Heap-based Buffer Overflow
CVE-2025-50164
CWE-122 Medium
No
No
2008 R2 6.1.7601.27872, 2008 6.0.6003.23471, 2012 R2 6.3.9600.22725, 2012 6.2.9200.25622, 2016 10.0.14393.8330, 2019 10.0.17763.7678, 2022 23H2 10.0.25398.1791, 2022 10.0.20348.3989, 2022 10.0.20348.4052, 2025 10.0.26100.4851, 2025 10.0.26100.4946 12.08.2025 SB2025081272
#VU113864 - Heap-based Buffer Overflow
CVE-2025-50163
CWE-122 High
No
No
2008 R2 6.1.7601.27872, 2008 6.0.6003.23471, 2012 R2 6.3.9600.22725, 2012 6.2.9200.25622, 2016 10.0.14393.8330, 2019 10.0.17763.7678, 2022 23H2 10.0.25398.1791, 2022 10.0.20348.3989, 2022 10.0.20348.4052, 2025 10.0.26100.4851, 2025 10.0.26100.4946 12.08.2025 SB2025081272
#VU113863 - Heap-based Buffer Overflow
CVE-2025-50162
CWE-122 Medium
No
No
2008 R2 6.1.7601.27872, 2008 6.0.6003.23471, 2012 R2 6.3.9600.22725, 2012 6.2.9200.25622, 2016 10.0.14393.8330, 2019 10.0.17763.7678, 2022 23H2 10.0.25398.1791, 2022 10.0.20348.3989, 2022 10.0.20348.4052, 2025 10.0.26100.4851, 2025 10.0.26100.4946 12.08.2025 SB2025081272
#VU113862 - Heap-based Buffer Overflow
CVE-2025-50160
CWE-122 Medium
No
No
2008 R2 6.1.7601.27872, 2008 6.0.6003.23471, 2012 R2 6.3.9600.22725, 2012 6.2.9200.25622, 2016 10.0.14393.8330, 2019 10.0.17763.7678, 2022 23H2 10.0.25398.1791, 2022 10.0.20348.3989, 2022 10.0.20348.4052, 2025 10.0.26100.4851, 2025 10.0.26100.4946 12.08.2025 SB2025081272
#VU113861 - Use of Uninitialized Resource
CVE-2025-50156
CWE-908 Medium
No
No
2008 R2 6.1.7601.27872, 2008 6.0.6003.23471, 2012 R2 6.3.9600.22725, 2012 6.2.9200.25622, 2016 10.0.14393.8330, 2019 10.0.17763.7678, 2022 23H2 10.0.25398.1791, 2022 10.0.20348.3989, 2022 10.0.20348.4052, 2025 10.0.26100.4851, 2025 10.0.26100.4946 12.08.2025 SB2025081272
#VU113848 - Improper Restriction of Communication Channel to Intended Endpoints
CVE-2025-48807
CWE-923 Low
No
No
2012 R2 6.3.9600.22725, 2016 10.0.14393.8246, 2019 10.0.17763.7558, 2022 23H2 10.0.25398.1732, 2022 10.0.20348.3932, 2025 10.0.26100.4652 12.08.2025 SB2025081267
#VU113847 - Numeric Truncation Error
CVE-2025-53723
CWE-197 Low
No
No
2012 R2 6.3.9600.22725, 2012 6.2.9200.25622, 2016 10.0.14393.8330, 2019 10.0.17763.7678, 2022 23H2 10.0.25398.1791, 2022 10.0.20348.3989, 2022 10.0.20348.4052, 2025 10.0.26100.4851, 2025 10.0.26100.4946 12.08.2025 SB2025081267
#VU113845 - Heap-based Buffer Overflow
CVE-2025-53155
CWE-122 Low
No
No
2012 R2 6.3.9600.22725, 2012 6.2.9200.25622, 2016 10.0.14393.8330, 2019 10.0.17763.7678, 2022 23H2 10.0.25398.1791, 2022 10.0.20348.3989, 2022 10.0.20348.4052, 2025 10.0.26100.4851, 2025 10.0.26100.4946 12.08.2025 SB2025081267
#VU113844 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2025-50167
CWE-362 Low
No
No
2012 R2 6.3.9600.22725, 2012 6.2.9200.25622, 2016 10.0.14393.8330, 2019 10.0.17763.7678, 2022 23H2 10.0.25398.1791, 2022 10.0.20348.3989, 2022 10.0.20348.4052, 2025 10.0.26100.4851, 2025 10.0.26100.4946 12.08.2025 SB2025081267
#VU113843 - Missing Synchronization
CVE-2025-49751
CWE-820 Medium
No
No
2016 10.0.14393.8330, 2019 10.0.17763.7678, 2022 23H2 10.0.25398.1791, 2022 10.0.20348.3989, 2022 10.0.20348.4052, 2025 10.0.26100.4851, 2025 10.0.26100.4946 12.08.2025 SB2025081267
#VU112704 - Exposure of sensitive information to an unauthorized actor
CVE-2025-36350
CWE-200 Low
No
No
2016 10.0.14393.8246, 2019 10.0.17763.7558, 2022 23H2 10.0.25398.1732, 2022 10.0.20348.3932, 2025 10.0.26100.4652, 2025 10.0.26200.4349 09.07.2025 SB20250709127
#VU112703 - Exposure of sensitive information to an unauthorized actor
CVE-2025-36357
CWE-200 Low
No
No
2016 10.0.14393.8246, 2019 10.0.17763.7558, 2022 23H2 10.0.25398.1732, 2022 10.0.20348.3932, 2025 10.0.26100.4652, 2025 10.0.26200.4349 09.07.2025 SB20250709126
#VU112701 - Protection Mechanism Failure
CVE-2025-49740
CWE-693 High
No
No
2016 10.0.14393.8246, 2019 10.0.17763.7558, 2022 23H2 10.0.22621.5472, 2022 23H2 10.0.25398.1732, 2022 10.0.20348.3932, 2025 10.0.26100.4652 09.07.2025 SB20250709117
#VU112700 - Out-of-bounds read
CVE-2025-47978
CWE-125 Medium
No
No
2022 23H2 10.0.22621.5472, 2022 23H2 10.0.25398.1732, 2022 10.0.20348.3932, 2025 10.0.26100.4652 09.07.2025 SB20250709116
#VU112699 - Insufficient UI Warning of Dangerous Operations
CVE-2025-33054
CWE-357 High
No
No
2025 10.0.26100.4652, 2025 10.0.26200.4349 09.07.2025 SB20250709115
#VU112689 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2025-49690
CWE-362 Low
No
No
2019 10.0.17763.7558, 2022 23H2 10.0.25398.1732, 2022 10.0.20348.3932, 2025 10.0.26100.4652, 2025 10.0.26200.4349 09.07.2025 SB20250709108
#VU112675 - Heap-based Buffer Overflow
CVE-2025-47981
CWE-122 High
No
No
2008 R2 6.1.7601.27820, 2012 R2 6.3.9600.22676, 2012 6.2.9200.25573, 2016 10.0.14393.8246, 2019 10.0.17763.7558, 2022 23H2 10.0.22621.5472, 2022 23H2 10.0.25398.1732, 2022 10.0.20348.3932, 2025 10.0.26100.4652 09.07.2025 SB20250709101
#VU112662 - Missing Authentication for Critical Function
CVE-2025-48814
CWE-306 Medium
No
No
2008 R2 6.1.7601.27820, 2012 R2 6.3.9600.22676, 2012 6.2.9200.25573, 2016 10.0.14393.8246, 2019 10.0.17763.7558, 2022 23H2 10.0.22621.5472, 2022 23H2 10.0.25398.1732, 2022 10.0.20348.3932, 2025 10.0.26100.4652 09.07.2025 SB20250709100
#VU112552 - Information Exposure through Microarchitectural State after Transient Execution
CVE-2024-36357
CWE-1342 Low
No
No
2016 10.0.14393.8246, 2019 10.0.17763.7558, 2022 23H2 10.0.22621.5472, 2022 23H2 10.0.25398.1732, 2022 10.0.20348.3932, 2025 10.0.26100.4652 08.07.2025 SB2025070882
SB2025070903
SB2025070904
and 43 more
#VU112549 - Information Exposure through Microarchitectural State after Transient Execution
CVE-2024-36350
CWE-1342 Low
No
No
2016 10.0.14393.8246, 2019 10.0.17763.7558, 2022 23H2 10.0.22621.5472, 2022 23H2 10.0.25398.1732, 2022 10.0.20348.3932, 2025 10.0.26100.4652 08.07.2025 SB2025070882
SB2025070903
SB2025070904
and 40 more


Showing elements 1181 - 1200 out of 6300