microsoft / windows_server_2022
1,272 known vulnerabilities in microsoft windows_server_2022.
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-42981 | Medium | 0.6% | 8.1 | Integer underflow (wrap or wraparound) in Windows Performance Monitor allows an … | |
| CVE-2024-21315 | Medium | 0.6% | 7.8 | Microsoft Defender for Endpoint Protection Elevation of Privilege Vulnerability | |
| CVE-2026-69852 | Medium | 0.6% | 7.5 | Remote Code Execution in Windows Routing and Remote Access Service (RRAS) allows… | |
| CVE-2026-72987 | Medium | 0.6% | 8.1 | Use after free in Windows DNS allows an unauthorized attacker to execute code ov… | |
| CVE-2026-62822 | Medium | 0.6% | 8.8 | Integer overflow or wraparound in Windows GDI+ allows an unauthorized attacker t… | |
| CVE-2023-21820 | Medium | 0.6% | 7.4 | Windows Distributed File System (DFS) Remote Code Execution Vulnerability | |
| CVE-2026-84001 | Medium | 0.6% | 7.5 | Out-of-bounds read in Windows Key Distribution Center allows an unauthorized att… | |
| CVE-2026-61363 | Medium | 0.6% | 7.5 | Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attac… | |
| CVE-2026-59134 | Medium | 0.6% | 7.5 | Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attac… | |
| CVE-2026-73012 | Medium | 0.6% | 8.8 | Heap-based buffer overflow in Windows Management Services allows an authorized a… | |
| CVE-2024-21354 | Medium | 0.6% | 7.8 | Microsoft Message Queuing (MSMQ) Elevation of Privilege Vulnerability | |
| CVE-2026-69607 | Medium | 0.6% | 7.5 | Use after free in Windows Deployment Services allows an unauthorized attacker to… | |
| CVE-2026-56188 | Medium | 0.6% | 9.8 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-62795 | Medium | 0.6% | 8.8 | Use after free in Windows LDAP - Lightweight Directory Access Protocol allows an… | |
| CVE-2024-38252 | Medium | 0.6% | 7.8 | Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability | |
| CVE-2026-50525 | Medium | 0.6% | 7.5 | Allocation of resources without limits or throttling in .NET allows an unauthori… | |
| CVE-2026-47653 | Medium | 0.6% | 8.8 | Use after free in Remote Desktop Client allows an unauthorized attacker to execu… | |
| CVE-2026-54984 | Medium | 0.6% | 7.8 | Heap-based buffer overflow in Windows Imaging Component allows an unauthorized a… | |
| CVE-2026-65791 | Medium | 0.6% | 9.8 | Heap-based buffer overflow in Windows iSCSI Target Service allows an unauthorize… | |
| CVE-2026-83992 | Medium | 0.6% | 8.8 | Heap-based buffer overflow in Windows Imaging Component allows an unauthorized a… | |
| CVE-2026-68846 | Medium | 0.6% | 7.1 | Use after free in Windows Kernel allows an authorized attacker to elevate privil… | |
| CVE-2026-69366 | Medium | 0.6% | 7.1 | Use after free in Windows Kernel allows an authorized attacker to elevate privil… | |
| CVE-2026-42987 | Medium | 0.6% | 8.1 | Use after free in Windows Deployment Services allows an unauthorized attacker to… | |
| CVE-2026-62819 | Medium | 0.6% | 8.1 | Remote Code Execution in Windows Routing and Remote Access Service (RRAS) allows… | |
| CVE-2023-36904 | Medium | 0.6% | 7.8 | Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability | |
| CVE-2026-50683 | Medium | 0.6% | 8.0 | Heap-based buffer overflow in Windows DHCP Server allows an authorized attacker … | |
| CVE-2026-69876 | Medium | 0.6% | 8.0 | Use after free in Windows DHCP Server allows an authorized attacker to execute c… | |
| CVE-2026-73016 | Medium | 0.6% | 8.8 | Heap-based buffer overflow in Microsoft Graphics Component allows an unauthorize… | |
| CVE-2026-58608 | Medium | 0.6% | 8.8 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2024-38246 | Medium | 0.6% | 7.0 | Win32k Elevation of Privilege Vulnerability | |
| CVE-2026-65679 | Medium | 0.6% | 8.1 | Heap-based buffer overflow in Windows iSCSI Target Service allows an unauthorize… | |
| CVE-2024-38248 | Medium | 0.6% | 7.0 | Windows Storage Elevation of Privilege Vulnerability | |
| CVE-2026-20864 | Medium | 0.6% | 7.8 | Heap-based buffer overflow in Connected Devices Platform Service (Cdpsvc) allows… | |
| CVE-2026-62889 | Medium | 0.6% | 8.1 | Double free in Windows Secure Socket Tunneling Protocol (SSTP) allows an unautho… | |
| CVE-2026-68834 | Medium | 0.6% | 8.0 | Stack-based buffer overflow in Windows NTFS allows an authorized attacker to ele… | |
| CVE-2026-73013 | Medium | 0.6% | 8.8 | Heap-based buffer overflow in Windows Imaging Component allows an unauthorized a… | |
| CVE-2026-73023 | Medium | 0.6% | 8.8 | Heap-based buffer overflow in Windows Imaging Component allows an unauthorized a… | |
| CVE-2026-77495 | Medium | 0.6% | 8.8 | Heap-based buffer overflow in Windows Imaging Component allows an unauthorized a… | |
| CVE-2021-38667 | Medium | 0.6% | 7.8 | Windows Print Spooler Elevation of Privilege Vulnerability | |
| CVE-2021-38671 | Medium | 0.6% | 7.8 | Windows Print Spooler Elevation of Privilege Vulnerability | |
| CVE-2026-47654 | Medium | 0.6% | 7.5 | Use after free in Remote Desktop Client allows an unauthorized attacker to execu… | |
| CVE-2026-48563 | Medium | 0.6% | 7.5 | Use after free in Remote Desktop Client allows an unauthorized attacker to execu… | |
| CVE-2022-41050 | Medium | 0.5% | 7.8 | Windows Extensible File Allocation Table Elevation of Privilege Vulnerability | |
| CVE-2021-42285 | Medium | 0.5% | 7.8 | Windows Kernel Elevation of Privilege Vulnerability | |
| CVE-2026-62706 | Medium | 0.5% | 8.8 | Out-of-bounds read in Microsoft Windows Media Foundation allows an unauthorized … | |
| CVE-2026-65789 | Medium | 0.5% | 8.1 | Use after free in Windows DNS allows an unauthorized attacker to execute code ov… | |
| CVE-2026-62820 | Medium | 0.5% | 8.1 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-42900 | Medium | 0.5% | 8.1 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-50365 | Medium | 0.5% | 8.0 | Improper authentication in Windows RPC API allows an unauthorized attacker to el… | |
| CVE-2026-50460 | Medium | 0.5% | 8.1 | Concurrent execution using shared resource with improper synchronization ('race … |