microsoft / windows_server_2025
1,131 known vulnerabilities in microsoft windows_server_2025.
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-42981 | Medium | 0.6% | 8.1 | Integer underflow (wrap or wraparound) in Windows Performance Monitor allows an … | |
| CVE-2026-69852 | Medium | 0.6% | 7.5 | Remote Code Execution in Windows Routing and Remote Access Service (RRAS) allows… | |
| CVE-2026-72987 | Medium | 0.6% | 8.1 | Use after free in Windows DNS allows an unauthorized attacker to execute code ov… | |
| CVE-2026-62822 | Medium | 0.6% | 8.8 | Integer overflow or wraparound in Windows GDI+ allows an unauthorized attacker t… | |
| CVE-2026-84001 | Medium | 0.6% | 7.5 | Out-of-bounds read in Windows Key Distribution Center allows an unauthorized att… | |
| CVE-2026-61363 | Medium | 0.6% | 7.5 | Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attac… | |
| CVE-2026-59134 | Medium | 0.6% | 7.5 | Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attac… | |
| CVE-2026-72928 | Medium | 0.6% | 7.5 | Use after free in Windows DNS allows an authorized attacker to execute code over… | |
| CVE-2026-73012 | Medium | 0.6% | 8.8 | Heap-based buffer overflow in Windows Management Services allows an authorized a… | |
| CVE-2026-69607 | Medium | 0.6% | 7.5 | Use after free in Windows Deployment Services allows an unauthorized attacker to… | |
| CVE-2026-56188 | Medium | 0.6% | 9.8 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-62795 | Medium | 0.6% | 8.8 | Use after free in Windows LDAP - Lightweight Directory Access Protocol allows an… | |
| CVE-2026-47653 | Medium | 0.6% | 8.8 | Use after free in Remote Desktop Client allows an unauthorized attacker to execu… | |
| CVE-2026-54984 | Medium | 0.6% | 7.8 | Heap-based buffer overflow in Windows Imaging Component allows an unauthorized a… | |
| CVE-2026-65791 | Medium | 0.6% | 9.8 | Heap-based buffer overflow in Windows iSCSI Target Service allows an unauthorize… | |
| CVE-2026-83992 | Medium | 0.6% | 8.8 | Heap-based buffer overflow in Windows Imaging Component allows an unauthorized a… | |
| CVE-2026-68846 | Medium | 0.6% | 7.1 | Use after free in Windows Kernel allows an authorized attacker to elevate privil… | |
| CVE-2026-69366 | Medium | 0.6% | 7.1 | Use after free in Windows Kernel allows an authorized attacker to elevate privil… | |
| CVE-2026-42987 | Medium | 0.6% | 8.1 | Use after free in Windows Deployment Services allows an unauthorized attacker to… | |
| CVE-2026-62819 | Medium | 0.6% | 8.1 | Remote Code Execution in Windows Routing and Remote Access Service (RRAS) allows… | |
| CVE-2026-50683 | Medium | 0.6% | 8.0 | Heap-based buffer overflow in Windows DHCP Server allows an authorized attacker … | |
| CVE-2026-69876 | Medium | 0.6% | 8.0 | Use after free in Windows DHCP Server allows an authorized attacker to execute c… | |
| CVE-2026-73016 | Medium | 0.6% | 8.8 | Heap-based buffer overflow in Microsoft Graphics Component allows an unauthorize… | |
| CVE-2026-50398 | Medium | 0.6% | 8.8 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-50414 | Medium | 0.6% | 7.5 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-58608 | Medium | 0.6% | 8.8 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-65679 | Medium | 0.6% | 8.1 | Heap-based buffer overflow in Windows iSCSI Target Service allows an unauthorize… | |
| CVE-2026-20864 | Medium | 0.6% | 7.8 | Heap-based buffer overflow in Connected Devices Platform Service (Cdpsvc) allows… | |
| CVE-2026-62889 | Medium | 0.6% | 8.1 | Double free in Windows Secure Socket Tunneling Protocol (SSTP) allows an unautho… | |
| CVE-2026-68834 | Medium | 0.6% | 8.0 | Stack-based buffer overflow in Windows NTFS allows an authorized attacker to ele… | |
| CVE-2026-73013 | Medium | 0.6% | 8.8 | Heap-based buffer overflow in Windows Imaging Component allows an unauthorized a… | |
| CVE-2026-73023 | Medium | 0.6% | 8.8 | Heap-based buffer overflow in Windows Imaging Component allows an unauthorized a… | |
| CVE-2026-77495 | Medium | 0.6% | 8.8 | Heap-based buffer overflow in Windows Imaging Component allows an unauthorized a… | |
| CVE-2026-47654 | Medium | 0.6% | 7.5 | Use after free in Remote Desktop Client allows an unauthorized attacker to execu… | |
| CVE-2026-48563 | Medium | 0.6% | 7.5 | Use after free in Remote Desktop Client allows an unauthorized attacker to execu… | |
| CVE-2026-62706 | Medium | 0.5% | 8.8 | Out-of-bounds read in Microsoft Windows Media Foundation allows an unauthorized … | |
| CVE-2026-65789 | Medium | 0.5% | 8.1 | Use after free in Windows DNS allows an unauthorized attacker to execute code ov… | |
| CVE-2026-62820 | Medium | 0.5% | 8.1 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-42900 | Medium | 0.5% | 8.1 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-50365 | Medium | 0.5% | 8.0 | Improper authentication in Windows RPC API allows an unauthorized attacker to el… | |
| CVE-2026-50460 | Medium | 0.5% | 8.1 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-62872 | Medium | 0.5% | 8.8 | Incorrect authorization in .NET Framework allows an authorized attacker to eleva… | |
| CVE-2026-42975 | Medium | 0.5% | 8.0 | Heap-based buffer overflow in Windows Bluetooth Port Driver allows an unauthoriz… | |
| CVE-2026-33826 | Medium | 0.5% | 8.0 | Improper input validation in Windows Active Directory allows an authorized attac… | |
| CVE-2026-62787 | Medium | 0.5% | 7.5 | Use after free in Windows DNS allows an authorized attacker to execute code over… | |
| CVE-2026-65796 | Medium | 0.5% | 8.1 | Heap-based buffer overflow in Windows iSCSI Target Service allows an unauthorize… | |
| CVE-2026-69314 | Medium | 0.5% | 7.1 | Use after free in Windows Device Association Broker service allows an authorized… | |
| CVE-2026-44803 | Medium | 0.5% | 7.8 | Integer overflow or wraparound in Windows Win32K - GRFX allows an unauthorized a… | |
| CVE-2026-44812 | Medium | 0.5% | 7.8 | Integer overflow or wraparound in Windows Win32K - GRFX allows an unauthorized a… | |
| CVE-2026-68835 | Medium | 0.5% | 7.1 | Use after free in Windows Print Spooler Components allows an authorized attacker… |