This page lists publicly disclosed CVE vulnerabilities affecting microsoft windows_server_2012 (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2026-50447 | Heap-based buffer overflow in Windows Message Queuing allows an unauthorized attacker to execute code over a network. | [email protected] | 9.8 | 0.93% | 2026-07-14 | 2026-07-22 |
| CVE-2026-50445 | Buffer over-read in Windows RDP allows an unauthorized attacker to disclose information over a network. | [email protected] | 6.5 | 0.67% | 2026-07-14 | 2026-07-22 |
| CVE-2026-50444 | Missing authentication for critical function in Windows Server Update Service allows an authorized attacker to elevate privileges over a network. | [email protected] | 8.8 | 0.60% | 2026-07-14 | 2026-07-21 |
| CVE-2026-50439 | Use after free in Microsoft Message Queuing Queue Manager allows an unauthorized attacker to execute code over a network. | [email protected] | 8.1 | 0.52% | 2026-07-14 | 2026-07-22 |
| CVE-2026-50435 | Buffer over-read in Windows Overlay Filter allows an authorized attacker to elevate privileges locally. | [email protected] | 7.8 | 0.24% | 2026-07-14 | 2026-07-23 |
| CVE-2026-50433 | Use after free in Windows Media allows an authorized attacker to elevate privileges locally. | [email protected] | 7.8 | 1.92% | 2026-07-14 | 2026-07-22 |
| CVE-2026-50431 | Windows Quality of Service (QoS) Packet Scheduler Information Disclosure Vulnerability | [email protected] | 5.5 | 0.47% | 2026-07-14 | 2026-07-22 |
| CVE-2026-50426 | Relative path traversal in DNS Server allows an authorized attacker to execute code over an adjacent network. | [email protected] | 6.8 | 0.37% | 2026-07-14 | 2026-07-20 |
| CVE-2026-50422 | Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally. | [email protected] | 7.8 | 0.32% | 2026-07-14 | 2026-07-20 |
| CVE-2026-50419 | Exposure of sensitive information to an unauthorized actor in Windows Kernel allows an authorized attacker to disclose information locally. | [email protected] | 3.3 | 0.35% | 2026-07-14 | 2026-07-22 |
| CVE-2026-50417 | Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally. | [email protected] | 7.8 | 0.32% | 2026-07-14 | 2026-07-21 |
| CVE-2026-50412 | Stack-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally. | [email protected] | 7.8 | 0.32% | 2026-07-14 | 2026-07-20 |
| CVE-2026-50411 | Stack-based buffer overflow in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny service over a network. | [email protected] | 7.5 | 0.80% | 2026-07-14 | 2026-07-22 |
| CVE-2026-50405 | Insufficient granularity of access control in Windows Filtering Platform (WFP) allows an authorized attacker to elevate privileges locally. | [email protected] | 7.8 | 0.22% | 2026-07-14 | 2026-07-22 |
| CVE-2026-50402 | Incorrect conversion between numeric types in Windows NTFS allows an authorized attacker to elevate privileges locally. | [email protected] | 7.8 | 0.24% | 2026-07-14 | 2026-07-22 |
| CVE-2026-50400 | Stack-based buffer overflow in Windows App Installer allows an authorized attacker to elevate privileges locally. | [email protected] | 7.8 | 0.24% | 2026-07-14 | 2026-07-22 |
| CVE-2026-50397 | Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally. | [email protected] | 7.0 | 0.20% | 2026-07-14 | 2026-07-22 |
| CVE-2026-50394 | Exposure of sensitive information to an unauthorized actor in Windows Media allows an authorized attacker to disclose information locally. | [email protected] | 5.5 | 0.36% | 2026-07-14 | 2026-07-22 |
| CVE-2026-50391 | Improper privilege management in Windows Group Policy allows an authorized attacker to elevate privileges locally. | [email protected] | 7.8 | 0.28% | 2026-07-14 | 2026-07-22 |
| CVE-2026-50390 | Access of resource using incompatible type ('type confusion') in Windows Kernel allows an authorized attacker to elevate privileges locally. | [email protected] | 7.0 | 0.29% | 2026-07-14 | 2026-07-22 |