Windows Server 2022 Microsoft Windows Server 2022

Do you want an email whenever new security vulnerabilities are reported in Microsoft Windows Server 2022?

By the Year

In 2022 there have been 294 vulnerabilities in Microsoft Windows Server 2022 with an average score of 7.5 out of ten. Last year Windows Server 2022 had 100 security vulnerabilities published. That is, 194 more vulnerabilities have already been reported in 2022 as compared to last year. However, the average CVE base score of the vulnerabilities in 2022 is greater by 0.22.

Year Vulnerabilities Average Score
2022 294 7.46
2021 100 7.24
2020 0 0.00
2019 0 0.00
2018 0 0.00

It may take a day or so for new Windows Server 2022 vulnerabilities to show up in the stats or in the list of recent security vulnerabilties. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Microsoft Windows Server 2022 Security Vulnerabilities

Windows TCP/IP Remote Code Execution Vulnerability.

CVE-2022-34718 9.8 - Critical - September 13, 2022

Windows TCP/IP Remote Code Execution Vulnerability.

Microsoft OLE DB Provider for SQL Server Remote Code Execution Vulnerability

CVE-2022-35836 8.8 - High - September 13, 2022

Microsoft OLE DB Provider for SQL Server Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-34731, CVE-2022-34733, CVE-2022-35834, CVE-2022-35835, CVE-2022-35840.

Code Injection

DirectX Graphics Kernel Elevation of Privilege Vulnerability.

CVE-2022-37954 7.8 - High - September 13, 2022

DirectX Graphics Kernel Elevation of Privilege Vulnerability.

Improper Privilege Management

Windows Common Log File System Driver Elevation of Privilege Vulnerability

CVE-2022-35803 7.8 - High - September 13, 2022

Windows Common Log File System Driver Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-37969.

Windows Enterprise App Management Service Remote Code Execution Vulnerability.

CVE-2022-35841 8.8 - High - September 13, 2022

Windows Enterprise App Management Service Remote Code Execution Vulnerability.

Improper Privilege Management

SPNEGO Extended Negotiation (NEGOEX) Security Mechanism Information Disclosure Vulnerability.

CVE-2022-37958 7.5 - High - September 13, 2022

SPNEGO Extended Negotiation (NEGOEX) Security Mechanism Information Disclosure Vulnerability.

Exposure of Resource to Wrong Sphere

Windows Common Log File System Driver Elevation of Privilege Vulnerability

CVE-2022-37969 7.8 - High - September 13, 2022

Windows Common Log File System Driver Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-35803.

Windows Fax Service Remote Code Execution Vulnerability.

CVE-2022-38004 7.8 - High - September 13, 2022

Windows Fax Service Remote Code Execution Vulnerability.

Windows Print Spooler Elevation of Privilege Vulnerability.

CVE-2022-38005 7.8 - High - September 13, 2022

Windows Print Spooler Elevation of Privilege Vulnerability.

Windows Graphics Component Information Disclosure Vulnerability

CVE-2022-38006 6.5 - Medium - September 13, 2022

Windows Graphics Component Information Disclosure Vulnerability. This CVE ID is unique from CVE-2022-34728, CVE-2022-35837.

Exposure of Resource to Wrong Sphere

Windows Distributed File System (DFS) Elevation of Privilege Vulnerability.

CVE-2022-34719 7.8 - High - September 13, 2022

Windows Distributed File System (DFS) Elevation of Privilege Vulnerability.

Windows Graphics Component Information Disclosure Vulnerability

CVE-2022-34728 5.5 - Medium - September 13, 2022

Windows Graphics Component Information Disclosure Vulnerability. This CVE ID is unique from CVE-2022-35837, CVE-2022-38006.

Windows GDI Elevation of Privilege Vulnerability.

CVE-2022-34729 7.8 - High - September 13, 2022

Windows GDI Elevation of Privilege Vulnerability.

Microsoft ODBC Driver Remote Code Execution Vulnerability

CVE-2022-34730 7.8 - High - September 13, 2022

Microsoft ODBC Driver Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-34726, CVE-2022-34727, CVE-2022-34732, CVE-2022-34734.

Microsoft OLE DB Provider for SQL Server Remote Code Execution Vulnerability

CVE-2022-34731 8.8 - High - September 13, 2022

Microsoft OLE DB Provider for SQL Server Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-34733, CVE-2022-35834, CVE-2022-35835, CVE-2022-35836, CVE-2022-35840.

Microsoft ODBC Driver Remote Code Execution Vulnerability

CVE-2022-34732 7.8 - High - September 13, 2022

Microsoft ODBC Driver Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-34726, CVE-2022-34727, CVE-2022-34730, CVE-2022-34734.

Microsoft OLE DB Provider for SQL Server Remote Code Execution Vulnerability

CVE-2022-34733 8.8 - High - September 13, 2022

Microsoft OLE DB Provider for SQL Server Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-34731, CVE-2022-35834, CVE-2022-35835, CVE-2022-35836, CVE-2022-35840.

Microsoft ODBC Driver Remote Code Execution Vulnerability

CVE-2022-34734 7.8 - High - September 13, 2022

Microsoft ODBC Driver Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-34726, CVE-2022-34727, CVE-2022-34730, CVE-2022-34732.

Windows Event Tracing Denial of Service Vulnerability.

CVE-2022-35832 5.5 - Medium - September 13, 2022

Windows Event Tracing Denial of Service Vulnerability.

Windows Secure Channel Denial of Service Vulnerability

CVE-2022-35833 7.5 - High - September 13, 2022

Windows Secure Channel Denial of Service Vulnerability. This CVE ID is unique from CVE-2022-30196.

Resource Exhaustion

Microsoft OLE DB Provider for SQL Server Remote Code Execution Vulnerability

CVE-2022-35834 8.8 - High - September 13, 2022

Microsoft OLE DB Provider for SQL Server Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-34731, CVE-2022-34733, CVE-2022-35835, CVE-2022-35836, CVE-2022-35840.

Microsoft OLE DB Provider for SQL Server Remote Code Execution Vulnerability

CVE-2022-35835 8.8 - High - September 13, 2022

Microsoft OLE DB Provider for SQL Server Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-34731, CVE-2022-34733, CVE-2022-35834, CVE-2022-35836, CVE-2022-35840.

Code Injection

Windows Graphics Component Information Disclosure Vulnerability

CVE-2022-35837 5.5 - Medium - September 13, 2022

Windows Graphics Component Information Disclosure Vulnerability. This CVE ID is unique from CVE-2022-34728, CVE-2022-38006.

Exposure of Resource to Wrong Sphere

HTTP V3 Denial of Service Vulnerability.

CVE-2022-35838 7.5 - High - September 13, 2022

HTTP V3 Denial of Service Vulnerability.

Resource Exhaustion

Microsoft OLE DB Provider for SQL Server Remote Code Execution Vulnerability

CVE-2022-35840 8.8 - High - September 13, 2022

Microsoft OLE DB Provider for SQL Server Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-34731, CVE-2022-34733, CVE-2022-35834, CVE-2022-35835, CVE-2022-35836.

Windows Group Policy Elevation of Privilege Vulnerability.

CVE-2022-37955 7.8 - High - September 13, 2022

Windows Group Policy Elevation of Privilege Vulnerability.

Windows Kernel Elevation of Privilege Vulnerability

CVE-2022-37956 7.8 - High - September 13, 2022

Windows Kernel Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-37957, CVE-2022-37964.

Windows Kernel Elevation of Privilege Vulnerability

CVE-2022-37957 7.8 - High - September 13, 2022

Windows Kernel Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-37956, CVE-2022-37964.

Network Device Enrollment Service (NDES) Security Feature Bypass Vulnerability.

CVE-2022-37959 6.5 - Medium - September 13, 2022

Network Device Enrollment Service (NDES) Security Feature Bypass Vulnerability.

Remote Procedure Call Runtime Remote Code Execution Vulnerability.

CVE-2022-35830 8.1 - High - September 13, 2022

Remote Procedure Call Runtime Remote Code Execution Vulnerability.

Windows Remote Access Connection Manager Information Disclosure Vulnerability.

CVE-2022-35831 5.5 - Medium - September 13, 2022

Windows Remote Access Connection Manager Information Disclosure Vulnerability.

Out-of-bounds Read

Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability.

CVE-2022-30200 7.8 - High - September 13, 2022

Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability.

Windows Kerberos Elevation of Privilege Vulnerability

CVE-2022-33647 8.1 - High - September 13, 2022

Windows Kerberos Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-33679.

Windows Kerberos Elevation of Privilege Vulnerability

CVE-2022-33679 8.1 - High - September 13, 2022

Windows Kerberos Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-33647.

Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability.

CVE-2022-34720 7.5 - High - September 13, 2022

Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability.

Windows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution Vulnerability

CVE-2022-34721 9.8 - Critical - September 13, 2022

Windows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-34722.

Windows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution Vulnerability

CVE-2022-34722 9.8 - Critical - September 13, 2022

Windows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-34721.

Windows DNS Server Denial of Service Vulnerability.

CVE-2022-34724 7.5 - High - September 13, 2022

Windows DNS Server Denial of Service Vulnerability.

Windows ALPC Elevation of Privilege Vulnerability.

CVE-2022-34725 7 - High - September 13, 2022

Windows ALPC Elevation of Privilege Vulnerability.

Race Condition

Microsoft ODBC Driver Remote Code Execution Vulnerability

CVE-2022-34726 8.8 - High - September 13, 2022

Microsoft ODBC Driver Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-34727, CVE-2022-34730, CVE-2022-34732, CVE-2022-34734.

Microsoft ODBC Driver Remote Code Execution Vulnerability

CVE-2022-34727 8.8 - High - September 13, 2022

Microsoft ODBC Driver Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-34726, CVE-2022-34730, CVE-2022-34732, CVE-2022-34734.

Windows Photo Import API Elevation of Privilege Vulnerability.

CVE-2022-26928 7 - High - September 13, 2022

Windows Photo Import API Elevation of Privilege Vulnerability.

Race Condition

Windows Credential Roaming Service Elevation of Privilege Vulnerability.

CVE-2022-30170 7.3 - High - September 13, 2022

Windows Credential Roaming Service Elevation of Privilege Vulnerability.

Windows Secure Channel Denial of Service Vulnerability

CVE-2022-30196 8.2 - High - September 13, 2022

Windows Secure Channel Denial of Service Vulnerability. This CVE ID is unique from CVE-2022-35833.

A flaw was found in CryptoPro Secure Disk bootloaders before 2022-06-01

CVE-2022-34301 6.7 - Medium - August 26, 2022

A flaw was found in CryptoPro Secure Disk bootloaders before 2022-06-01. An attacker may use this bootloader to bypass or tamper with Secure Boot protections. In order to load and execute arbitrary code in the pre-boot stage, an attacker simply needs to replace the existing signed bootloader currently in use with this bootloader. Access to the EFI System Partition is required for booting using external media.

A flaw was found in New Horizon Datasys bootloaders before 2022-06-01

CVE-2022-34302 6.7 - Medium - August 26, 2022

A flaw was found in New Horizon Datasys bootloaders before 2022-06-01. An attacker may use this bootloader to bypass or tamper with Secure Boot protections. In order to load and execute arbitrary code in the pre-boot stage, an attacker simply needs to replace the existing signed bootloader currently in use with this bootloader. Access to the EFI System Partition is required for booting using external media.

A flaw was found in Eurosoft bootloaders before 2022-06-01

CVE-2022-34303 6.7 - Medium - August 26, 2022

A flaw was found in Eurosoft bootloaders before 2022-06-01. An attacker may use this bootloader to bypass or tamper with Secure Boot protections. In order to load and execute arbitrary code in the pre-boot stage, an attacker simply needs to replace the existing signed bootloader currently in use with this bootloader. Access to the EFI System Partition is required for booting using external media.

Windows Defender Credential Guard Elevation of Privilege Vulnerability

CVE-2022-34711 7.8 - High - August 15, 2022

Windows Defender Credential Guard Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-34705, CVE-2022-35771.

Windows Defender Credential Guard Security Feature Bypass Vulnerability

CVE-2022-35822 7.1 - High - August 15, 2022

Windows Defender Credential Guard Security Feature Bypass Vulnerability. This CVE ID is unique from CVE-2022-34709.

Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability

CVE-2022-34702 8.1 - High - August 09, 2022

Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-34714, CVE-2022-35745, CVE-2022-35752, CVE-2022-35753, CVE-2022-35766, CVE-2022-35767, CVE-2022-35794.

Race Condition

Windows Partition Management Driver Elevation of Privilege Vulnerability

CVE-2022-33670 7.8 - High - August 09, 2022

Windows Partition Management Driver Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-34703.

Windows Kernel Information Disclosure Vulnerability

CVE-2022-30197 5.5 - Medium - August 09, 2022

Windows Kernel Information Disclosure Vulnerability. This CVE ID is unique from CVE-2022-34708.

Windows WebBrowser Control Remote Code Execution Vulnerability.

CVE-2022-30194 7.5 - High - August 09, 2022

Windows WebBrowser Control Remote Code Execution Vulnerability.

Windows Point-to-Point Protocol (PPP) Remote Code Execution Vulnerability

CVE-2022-30133 9.8 - Critical - August 09, 2022

Windows Point-to-Point Protocol (PPP) Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-35744.

Windows Defender Credential Guard Elevation of Privilege Vulnerability

CVE-2022-35771 7.8 - High - August 09, 2022

Windows Defender Credential Guard Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-34705.

Windows Point-to-Point Protocol (PPP) Denial of Service Vulnerability

CVE-2022-35769 7.5 - High - August 09, 2022

Windows Point-to-Point Protocol (PPP) Denial of Service Vulnerability. This CVE ID is unique from CVE-2022-35747.

Windows Kernel Elevation of Privilege Vulnerability

CVE-2022-35768 7.8 - High - August 09, 2022

Windows Kernel Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-34707, CVE-2022-35761.

Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability

CVE-2022-35767 8.1 - High - August 09, 2022

Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-34702, CVE-2022-34714, CVE-2022-35745, CVE-2022-35752, CVE-2022-35753, CVE-2022-35766, CVE-2022-35794.

Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability

CVE-2022-35766 8.1 - High - August 09, 2022

Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-34702, CVE-2022-34714, CVE-2022-35745, CVE-2022-35752, CVE-2022-35753, CVE-2022-35767, CVE-2022-35794.

Code Injection

Storage Spaces Direct Elevation of Privilege Vulnerability

CVE-2022-35765 7.8 - High - August 09, 2022

Storage Spaces Direct Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-35762, CVE-2022-35763, CVE-2022-35764, CVE-2022-35792.

Storage Spaces Direct Elevation of Privilege Vulnerability

CVE-2022-35764 7.8 - High - August 09, 2022

Storage Spaces Direct Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-35762, CVE-2022-35763, CVE-2022-35765, CVE-2022-35792.

Storage Spaces Direct Elevation of Privilege Vulnerability

CVE-2022-35763 7.8 - High - August 09, 2022

Storage Spaces Direct Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-35762, CVE-2022-35764, CVE-2022-35765, CVE-2022-35792.

Storage Spaces Direct Elevation of Privilege Vulnerability

CVE-2022-35762 7.8 - High - August 09, 2022

Storage Spaces Direct Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-35763, CVE-2022-35764, CVE-2022-35765, CVE-2022-35792.

Windows Kernel Elevation of Privilege Vulnerability

CVE-2022-35761 7.8 - High - August 09, 2022

Windows Kernel Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-34707, CVE-2022-35768.

Microsoft ATA Port Driver Elevation of Privilege Vulnerability.

CVE-2022-35760 7.8 - High - August 09, 2022

Microsoft ATA Port Driver Elevation of Privilege Vulnerability.

Windows Network File System Remote Code Execution Vulnerability.

CVE-2022-34715 9.8 - Critical - August 09, 2022

Windows Network File System Remote Code Execution Vulnerability.

Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability

CVE-2022-34714 8.1 - High - August 09, 2022

Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-34702, CVE-2022-35745, CVE-2022-35752, CVE-2022-35753, CVE-2022-35766, CVE-2022-35767, CVE-2022-35794.

Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability

CVE-2022-34713 7.8 - High - August 09, 2022

Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-35743.

Windows Defender Credential Guard Information Disclosure Vulnerability

CVE-2022-34712 5.5 - Medium - August 09, 2022

Windows Defender Credential Guard Information Disclosure Vulnerability. This CVE ID is unique from CVE-2022-34704, CVE-2022-34710.

Windows Defender Credential Guard Security Feature Bypass Vulnerability.

CVE-2022-34709 6.7 - Medium - August 09, 2022

Windows Defender Credential Guard Security Feature Bypass Vulnerability.

Object Type Confusion

Windows Kernel Information Disclosure Vulnerability

CVE-2022-34708 5.5 - Medium - August 09, 2022

Windows Kernel Information Disclosure Vulnerability. This CVE ID is unique from CVE-2022-30197.

Windows Kernel Elevation of Privilege Vulnerability

CVE-2022-34707 7.8 - High - August 09, 2022

Windows Kernel Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-35761, CVE-2022-35768.

Dangling pointer

Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability.

CVE-2022-34706 7.8 - High - August 09, 2022

Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability.

Windows Secure Socket Tunneling Protocol (SSTP) Denial of Service Vulnerability.

CVE-2022-34701 7.5 - High - August 09, 2022

Windows Secure Socket Tunneling Protocol (SSTP) Denial of Service Vulnerability.

Windows Win32k Elevation of Privilege Vulnerability.

CVE-2022-34699 7.8 - High - August 09, 2022

Windows Win32k Elevation of Privilege Vulnerability.

Windows Hyper-V Remote Code Execution Vulnerability.

CVE-2022-34696 7.8 - High - August 09, 2022

Windows Hyper-V Remote Code Execution Vulnerability.

Race Condition

Active Directory Domain Services Elevation of Privilege Vulnerability.

CVE-2022-34691 8.8 - High - August 09, 2022

Active Directory Domain Services Elevation of Privilege Vulnerability.

Windows Fax Service Elevation of Privilege Vulnerability.

CVE-2022-34690 7.1 - High - August 09, 2022

Windows Fax Service Elevation of Privilege Vulnerability.

Windows Defender Credential Guard Elevation of Privilege Vulnerability

CVE-2022-34705 7.8 - High - August 09, 2022

Windows Defender Credential Guard Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-35771.

Dangling pointer

Windows Defender Credential Guard Information Disclosure Vulnerability

CVE-2022-34704 4.7 - Medium - August 09, 2022

Windows Defender Credential Guard Information Disclosure Vulnerability. This CVE ID is unique from CVE-2022-34710, CVE-2022-34712.

Side Channel Attack

Windows Partition Management Driver Elevation of Privilege Vulnerability

CVE-2022-34703 7.8 - High - August 09, 2022

Windows Partition Management Driver Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-33670.

Windows Defender Credential Guard Information Disclosure Vulnerability

CVE-2022-34710 5.5 - Medium - August 09, 2022

Windows Defender Credential Guard Information Disclosure Vulnerability. This CVE ID is unique from CVE-2022-34704, CVE-2022-34712.

Windows Bluetooth Driver Elevation of Privilege Vulnerability.

CVE-2022-35820 7.8 - High - August 09, 2022

Windows Bluetooth Driver Elevation of Privilege Vulnerability.

Windows Error Reporting Service Elevation of Privilege Vulnerability.

CVE-2022-35795 7.8 - High - August 09, 2022

Windows Error Reporting Service Elevation of Privilege Vulnerability.

Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability

CVE-2022-35794 8.1 - High - August 09, 2022

Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-34702, CVE-2022-34714, CVE-2022-35745, CVE-2022-35752, CVE-2022-35753, CVE-2022-35766, CVE-2022-35767.

Windows Print Spooler Elevation of Privilege Vulnerability

CVE-2022-35793 7.3 - High - August 09, 2022

Windows Print Spooler Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-35755.

Storage Spaces Direct Elevation of Privilege Vulnerability

CVE-2022-35792 7.8 - High - August 09, 2022

Storage Spaces Direct Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-35762, CVE-2022-35763, CVE-2022-35764, CVE-2022-35765.

Windows BitLocker Information Disclosure Vulnerability.

CVE-2022-22711 5.7 - Medium - July 12, 2022

Windows BitLocker Information Disclosure Vulnerability.

Exposure of Resource to Wrong Sphere

Windows CSRSS Elevation of Privilege Vulnerability

CVE-2022-22026 8.8 - High - July 12, 2022

Windows CSRSS Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-22047, CVE-2022-22049.

Memory Corruption

Windows Fax Service Remote Code Execution Vulnerability

CVE-2022-22027 7.8 - High - July 12, 2022

Windows Fax Service Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-22024.

Code Injection

Windows Network File System Information Disclosure Vulnerability.

CVE-2022-22028 5.9 - Medium - July 12, 2022

Windows Network File System Information Disclosure Vulnerability.

Exposure of Resource to Wrong Sphere

Windows Network File System Remote Code Execution Vulnerability

CVE-2022-22029 8.1 - High - July 12, 2022

Windows Network File System Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-22039.

Code Injection

Windows Credential Guard Domain-joined Public Key Elevation of Privilege Vulnerability.

CVE-2022-22031 7.8 - High - July 12, 2022

Windows Credential Guard Domain-joined Public Key Elevation of Privilege Vulnerability.

Improper Privilege Management

Windows Graphics Component Elevation of Privilege Vulnerability.

CVE-2022-22034 7.8 - High - July 12, 2022

Windows Graphics Component Elevation of Privilege Vulnerability.

Improper Privilege Management

Performance Counters for Windows Elevation of Privilege Vulnerability.

CVE-2022-22036 7 - High - July 12, 2022

Performance Counters for Windows Elevation of Privilege Vulnerability.

Improper Privilege Management

Windows Advanced Local Procedure Call Elevation of Privilege Vulnerability

CVE-2022-22037 7.5 - High - July 12, 2022

Windows Advanced Local Procedure Call Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-30202, CVE-2022-30224.

Improper Privilege Management

Remote Procedure Call Runtime Remote Code Execution Vulnerability.

CVE-2022-22038 8.1 - High - July 12, 2022

Remote Procedure Call Runtime Remote Code Execution Vulnerability.

Code Injection

Windows Network File System Remote Code Execution Vulnerability

CVE-2022-22039 7.5 - High - July 12, 2022

Windows Network File System Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-22029.

Code Injection

Windows.Devices.Picker.dll Elevation of Privilege Vulnerability.

CVE-2022-22045 7.8 - High - July 12, 2022

Windows.Devices.Picker.dll Elevation of Privilege Vulnerability.

Improper Privilege Management

Windows Internet Information Services Cachuri Module Denial of Service Vulnerability.

CVE-2022-22025 7.5 - High - July 12, 2022

Windows Internet Information Services Cachuri Module Denial of Service Vulnerability.

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Microsoft Windows Server 2022 or by Microsoft? Click the Watch button to subscribe.

Microsoft
Vendor

subscribe