Direkt zum Inhalt
IACS RadarIndustrial Cyber Exposure & Intelligence
Zurück zu Microsoft

Microsoft

Windows Server

Betriebssystem für Engineering-Server und Historians innerhalb der Umspannwerks-IT.

33

Schwachstellen

33

KEV

0

Advisories

Kategorie

operating-system

Davon kritisch (CVSS ≥ 9)

1

KEV-Treffer

33

Patch verfügbar

2 / 33

RDPHTTPSOnderstations

Schwachstellen

Sortiert nach IACS-Radar-Prioritätswert (CVSS, EPSS, KEV und industrielle Relevanz kombiniert).

CVE-2025-59287

Microsoft Windows Server Update Service (WSUS) Deserialization of Untrusted Data Vulnerability

100/100CVSS 9.8 KEVKein Patch verfügbar

CVE-2025-33053

Microsoft Windows External Control of File Name or Path Vulnerability

95/100CVSS 8.8 KEVKein Patch verfügbar

CVE-2025-33073

Microsoft Windows SMB Client Improper Access Control Vulnerability

93/100CVSS 8.8 KEVKein Patch verfügbar

CVE-2013-3918

Microsoft Windows Out-of-Bounds Write Vulnerability

89/100CVSS 8.8 KEVKein Patch verfügbar

CVE-2025-24054

Microsoft Windows NTLM Hash Disclosure Spoofing Vulnerability

71/100CVSS 6.5 KEVKein Patch verfügbar

CVE-2026-21510

Microsoft Windows Shell Protection Mechanism Failure Vulnerability

69/100CVSS 8.8 KEVKein Patch verfügbar

CVE-2026-21513

Microsoft MSHTML Framework Protection Mechanism Failure Vulnerability

64/100CVSS 8.8 KEVKein Patch verfügbar

CVE-2026-32202

Microsoft Windows Protection Mechanism Failure Vulnerability

63/100CVSS 4.3 KEVKein Patch verfügbar

CVE-2026-21533

Microsoft Windows Improper Privilege Management Vulnerability

63/100CVSS 7.8 KEVKein Patch verfügbar

CVE-2025-30397

Microsoft Windows Scripting Engine Type Confusion Vulnerability

63/100CVSS 7.5 KEVKein Patch verfügbar

CVE-2025-26633

Microsoft Windows Management Console (MMC) Improper Neutralization Vulnerability

62/100CVSS 7.0 KEVKein Patch verfügbar

CVE-2018-8639

Microsoft Windows Win32k Improper Resource Shutdown or Release Vulnerability

62/100CVSS 7.8 KEVKein Patch verfügbar

CVE-2025-29824

Microsoft Windows Common Log File System (CLFS) Driver Use-After-Free Vulnerability

59/100CVSS 7.8 KEVKein Patch verfügbar

CVE-2023-36424

Microsoft Windows Out-of-Bounds Read Vulnerability

58/100CVSS 7.8 KEVKein Patch verfügbar

CVE-2025-24990

Microsoft Windows Untrusted Pointer Dereference Vulnerability

56/100CVSS 7.8 KEVKein Patch verfügbar

CVE-2025-24985

Microsoft Windows Fast FAT File System Driver Integer Overflow Vulnerability

55/100CVSS 7.8 KEVKein Patch verfügbar

CVE-2026-21519

Microsoft Windows Type Confusion Vulnerability

54/100CVSS 7.8 KEVKein Patch verfügbar

CVE-2025-62221

Microsoft Windows Use After Free Vulnerability

54/100CVSS 7.8 KEVKein Patch verfügbar

CVE-2025-59230

Microsoft Windows Improper Access Control Vulnerability

54/100CVSS 7.8 KEVKein Patch verfügbar

CVE-2021-43226

Microsoft Windows Privilege Escalation Vulnerability

54/100CVSS 7.8 KEVKein Patch verfügbar

CVE-2025-32709

Microsoft Windows Ancillary Function Driver for WinSock Use-After-Free Vulnerability

54/100CVSS 7.8 KEVKein Patch verfügbar

CVE-2025-32706

Microsoft Windows Common Log File System (CLFS) Driver Heap-Based Buffer Overflow Vulnerability

54/100CVSS 7.8 KEVKein Patch verfügbar

CVE-2025-32701

Microsoft Windows Common Log File System (CLFS) Driver Use-After-Free Vulnerability

54/100CVSS 7.8 KEVKein Patch verfügbar

CVE-2025-30400

Microsoft Windows DWM Core Library Use-After-Free Vulnerability

54/100CVSS 7.8 KEVKein Patch verfügbar

CVE-2025-24993

Microsoft Windows NTFS Heap-Based Buffer Overflow Vulnerability

54/100CVSS 7.8 KEVKein Patch verfügbar

CVE-2026-85880

Microsoft Windows Heap-Based Buffer Overflow Vulnerability

53/100CVSS 7.8 KEVPatch verfügbar

CVE-2026-68820

Microsoft Windows Ancillary Function Driver for WinSock Use-After-Free Vulnerability

52/100CVSS 7.0 KEVPatch verfügbar

CVE-2025-62215

Microsoft Windows Race Condition Vulnerability

52/100CVSS 7.0 KEVKein Patch verfügbar

CVE-2025-24983

Microsoft Windows Win32k Use-After-Free Vulnerability

50/100CVSS 7.0 KEVKein Patch verfügbar

CVE-2026-21525

Microsoft Windows NULL Pointer Dereference Vulnerability

47/100CVSS 6.2 KEVKein Patch verfügbar

CVE-2026-20805

Microsoft Windows Information Disclosure Vulnerability

44/100CVSS 5.5 KEVKein Patch verfügbar

CVE-2025-24991

Microsoft Windows NTFS Out-Of-Bounds Read Vulnerability

42/100CVSS 5.5 KEVKein Patch verfügbar

CVE-2025-24984

Microsoft Windows NTFS Information Disclosure Vulnerability

38/100CVSS 4.6 KEVKein Patch verfügbar

ICS-Advisories

Advisories von CISA oder direkt vom Hersteller.

Keine ICS-Advisories für dieses Produkt bekannt