136 exploited vulnerabilities in Windows Server 2012
- Vendors
- Microsoft, Adobe
- With known exploits
- 136
- Affected Microsoft Windows 10 1507 versions
- All versions
- Affected Microsoft Windows 10 1607 versions
- All versions
- Affected Microsoft Windows 10 1809 versions
- All versions
- Affected Microsoft Windows 10 20h2 versions
- < 10.0.19042.2728, 10.0.19042.1766
- Affected Microsoft Windows 10 21h2 versions
- < 10.0.19044.2728, 10.0.19044.1766
- Affected Microsoft Windows 10 22h2 versions
- < 10.0.19045.2728
- Affected Microsoft Windows 11 21h2 versions
- < 10.0.22000.1696, 10.0.22000.739
- Affected Microsoft Windows 11 22h2 versions
- < 10.0.22000.1413
Vulnerabilities with exploits
Highest CVSS first β 45 of these already have exploit code on Sploitus
CVE-2023-23415
CVE-2022-30190 62 exploits
CVE-2017-8543
CVE-2016-7182 1 exploit
CVE-2016-3236 2 exploits
NetBIOS Response BadTunnel Brute Force Spoof (NAT Tunnel)NetBIOS Response "BadTunnel" Brute Force Spoof (NAT Tunnel)
CVE-2015-1635 17 exploits
Exploit for Code Injection in MicrosoftMS15-034 HTTP Protocol Stack Request Handling HTTP.SYS Memory Information Disclosure
CVE-2014-6321
CVE-2018-8423 1 exploit
CVE-2018-8413 3 exploits
Microsoft Windows 10 - Theme API (ThemePack) File Parsing ExploitMicrosoft Windows 10 - Theme API ThemePack File Parsing
CVE-2018-8544 3 exploits
Microsoft VBScript OLEAUT32!VariantClear / scrrun!VBADictionary::put_Item Use-After-FreeVBScript - 'OLEAUT32!VariantClear' and 'scrrun!VBADictionary::put_Item' Use-After-Free
CVE-2018-8420 1 exploit
CVE-2017-8558 2 exploits
Microsoft MsMpEng - mpengine x86 Emulator Heap Corruption in VFS API ExploitMicrosoft MsMpEng - mpengine x86 Emulator Heap Corruption in VFS API
CVE-2017-0290 5 exploits
π Microsoft Malware Protection Engine Type ConfusionMicrosoft Malware Protection Engine RCE (CVE-2017-0290)
CVE-2017-8682 2 exploits
Microsoft Windows Kernel - win32k.sys TTF Font Processing - Out-of-Bounds Reads/Writes with MalformeMicrosoft Windows Kernel - 'win32k.sys' '.TTF' Font Processing Out-of-Bounds Reads/Writes with Malformed 'fpgm' table 'win32k!bGeneratePath' (Denial of Service)
CVE-2017-0283 3 exploits
Microsoft Windows - USP10!MergeLigRecords Uniscribe Font Processing Heap-Based Memory CorruptionMicrosoft Windows Uniscribe Remote Code Execution Vulnerability(CVE-2017-0283)
CVE-2017-8464 20 exploits
CVE-2016-3237 4 exploits
CVE-2016-3213 2 exploits
NetBIOS Response BadTunnel Brute Force Spoof (NAT Tunnel)NetBIOS Response "BadTunnel" Brute Force Spoof (NAT Tunnel)
CVE-2016-3223 4 exploits
Microsoft Windows 7 (x32/x64) - Group Policy Privilege Escalation (MS16-072)Microsoft Windows 7 (x86x64) - Group Policy Privilege Escalation (MS16-072)
CVE-2016-0170 2 exploits
Microsoft Windows - gdi32.dll Heap Based Buffer Overflow in ExtEscape() Triggerable via EMR_EXTESCAPMicrosoft Windows - 'gdi32.dll' Heap Buffer Overflow in ExtEscape() Triggerable via EMR_EXTESCAPE EMF Record (MS16-055)
CVE-2016-0145 2 exploits
Microsoft Windows - Kernel win32k.sys TTF Processing EBLC / EBSC Tables Pool Corruption (MS16-039)Microsoft Windows Kernel - 'win32k.sys' TTF Processing EBLC / EBSC Tables Pool Corruption (MS16-039)
CVE-2016-0121 2 exploits
Microsoft Windows - Kernel ATMFD.dll OTF Font Processing Pool-Based Buffer Overflow (MS16-026)Microsoft Windows Kernel - 'ATMFD.dll' OTF Font Processing Pool-Based Buffer Overflow (MS16-026)
CVE-2016-0015 2 exploits
Microsoft Windows devenum.dll!DeviceMoniker::Load() - Heap Corruption Buffer Underflow (MS16-007)Microsoft Windows - devenum.dll!DeviceMoniker::Load() Heap Corruption Buffer Underflow (MS16-007)
CVE-2015-2464 2 exploits
Windows win32k.sys TTF Font Processing win32k!fsc_BLTHoriz Out-of-Bounds Pool Write ExploitMicrosoft Windows - 'win32k.sys' TTF Font Processing win32k!fsc_BLTHoriz Out-of-Bounds Pool Write
CVE-2015-2463 2 exploits
Windows win32k.sys TTF Font Processing win32k!fsc_RemoveDups Out-of-Bounds Pool Memory AccessMicrosoft Windows - 'win32k.sys' TTF Font Processing win32k!fsc_RemoveDups Out-of-Bounds Pool Memory Access
CVE-2015-2462 2 exploits
Windows ATMFD.DLL Out-of-Bounds Read Due to Malformed FDSelect Offset in the CFF Table ExploitMicrosoft Windows - 'ATMFD.DLL' Out-of-Bounds Read Due to Malformed FDSelect Offset in the CFF Table
CVE-2015-2460 3 exploits
Windows ATMFD.DLL CFF table (ATMFD+0x3440b / ATMFD+0x3440e) Invalid Memory AccessWindows ATMFD.DLL CFF table (ATMFD+0x3440b / ATMFD+0x3440e) Invalid Memory Access Exploit
CVE-2015-2459 2 exploits
Windows ATMFD.DLL CFF table (ATMFD+0x34072 / ATMFD+0x3407b) Invalid Memory Access ExploitMicrosoft Windows - 'ATMFD.DLL' CFF table (ATMFD+0x34072 / ATMFD+0x3407b) Invalid Memory Access
CVE-2015-2456 2 exploits
Windows win32k.sys TTF Font Processing win32k!scl_ApplyTranslation Pool-Based Buffer Overflow ExploiMicrosoft Windows - 'win32k.sys' TTF Font Processing win32k!scl_ApplyTranslation Pool-Based Buffer Overflow
CVE-2015-2455 2 exploits
Windows win32k.sys TTF Font Processing IUP[] Program Instruction Pool-Based Buffer Overflow ExploitMicrosoft Windows - 'win32k.sys' TTF Font Processing IUP[] Program Instruction Pool-Based Buffer Overflow
CVE-2015-2432 2 exploits
Windows ATMFD.DLL Write to Uninitialized Address Due to Malformed CFF Table ExploitMicrosoft Windows - 'ATMFD.DLL' Write to Uninitialized Address Due to Malformed CFF Table
CVE-2015-0096 17 exploits
CVE-2015-0081 1 exploit
CVE-2014-6352 15 exploits
Microsoft-Office-2007-and-2010---OLE-Arbitrary-Command-ExecutionMS14-064 Microsoft Windows OLE Package Manager Code Execution Exploit
CVE-2014-4114 24 exploits
CVE-2013-3174 5 exploits
DirectShow Arbitrary Memory Overwrite Vulnerability (MS13-056)Microsoft DirectShow - Arbitrary Memory Overwrite (MS13-056)
CVE-2014-6324 9 exploits
CVE-2018-0824 5 exploits
CVE-2013-3918 4 exploits
Microsoft Internet Explorer - CardSpaceClaimCollection ActiveX Integer Underflow (MS13-090) (Metasploit)MS13-090 CardSpaceClaimCollection ActiveX Integer Underflow
CVE-2018-8639
CVE-2015-0008 4 exploits
Microsoft Windows Server 2012 - (Group Policy) Remote Code Execution ExploitMicrosoft Windows Server 2012 - Group Policy Remote Code Execution
CVE-2019-0570 2 exploits
Microsoft Windows 10 - RestrictedErrorInfo Unmarshal Section Handle Use-After-Free ExploitMicrosoft Windows 10 - 'RestrictedErrorInfo' Unmarshal Section Handle Use-After-Free
CVE-2019-0555 2 exploits
Microsoft Windows 10 - XmlDocument Insecure Sharing Privilege Escalation ExploitMicrosoft Windows 10 - XmlDocument Insecure Sharing Privilege Escalation
CVE-2019-0543 2 exploits
Microsoft Windows 10 - SSPI Network Authentication Session 0 Privilege Escalation ExploitMicrosoft Windows 10 - SSPI Network Authentication Session 0 Privilege Escalation
CVE-2018-8550 3 exploits
Microsoft Windows - DfMarshal Unsafe Unmarshaling Privilege Escalation ExploitMicrosoft Windows - DfMarshal Unsafe Unmarshaling Privilege Escalation
CVE-2018-0748 2 exploits
Microsoft Windows - NTFS Owner/Mandatory Label Privilege Bypass ExploitMicrosoft Windows - NTFS Owner/Mandatory Label Privilege Bypass
CVE-2018-0749 2 exploits
Microsoft Windows SMB Server (v1 and v2) - Mount Point Arbitrary Device Open Privilege Escalation ExMicrosoft Windows SMB Server (v1/v2) - Mount Point Arbitrary Device Open Privilege Escalation
CVE-2018-8411 2 exploits
Microsoft Windows - FSCTL_FIND_FILES_BY_SID Information Disclosure ExploitMicrosoft Windows - 'FSCTL_FIND_FILES_BY_SID' Information Disclosure
CVE-2018-8611
CVE-2018-8453 8 exploits