{"schema_version":1,"title":"Microsoft Windows Server 2012 R2 vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 29 vulnerabilities in Microsoft Windows Server 2012 R2: 0 in the last 7 days and 26 in the last 90 days, 3 of them critical and 1 exploited in the wild. The most recent, CVE-2026-58627, was published on 14 July 2026.","url":"https://junglewise.ai/threats/technologies/windows-server-2012-r2","json_url":"https://junglewise.ai/threats/technologies/windows-server-2012-r2.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/windows-server-2012-r2","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":19,"all_time":29,"critical":3,"exploited":1,"last_7_days":0,"last_30_days":0,"last_90_days":26,"last_365_days":29},"latest":[{"cve":"CVE-2026-58627","cvss":7.5,"slug":"cve-2026-58627-microsoft-windows-dhcp-server-denial-of-service","title":"Microsoft Windows DHCP Server denial of service","severity":"high","exploited":false,"published_at":"2026-07-14T18:18:44.79+00:00","url":"https://junglewise.ai/threats/cve-2026-58627-microsoft-windows-dhcp-server-denial-of-service"},{"cve":"CVE-2026-57096","cvss":7.8,"slug":"cve-2026-57096-microsoft-windows-rras-heap-overflow-privilege-escalation","title":"Microsoft Windows RRAS heap overflow privilege escalation","severity":"high","exploited":false,"published_at":"2026-07-14T18:18:34.52+00:00","url":"https://junglewise.ai/threats/cve-2026-57096-microsoft-windows-rras-heap-overflow-privilege-escalation"},{"cve":"CVE-2026-56647","cvss":8.8,"slug":"cve-2026-56647-microsoft-windows-remote-access-service-privilege-escalation","title":"Microsoft Windows Remote Access Service privilege escalation","severity":"high","exploited":false,"published_at":"2026-07-14T18:18:30.93+00:00","url":"https://junglewise.ai/threats/cve-2026-56647-microsoft-windows-remote-access-service-privilege-escalation"},{"cve":"CVE-2026-56159","cvss":9.8,"slug":"cve-2026-56159-microsoft-windows-dhcp-server-heap-overflow-remote-code-execution","title":"Microsoft Windows DHCP Server heap overflow remote code execution","severity":"critical","exploited":false,"published_at":"2026-07-14T18:18:22.797+00:00","url":"https://junglewise.ai/threats/cve-2026-56159-microsoft-windows-dhcp-server-heap-overflow-remote-code-execution"},{"cve":"CVE-2026-54121","cvss":8.8,"slug":"cve-2026-54121-microsoft-active-directory-certificate-services-privilege","title":"Microsoft Active Directory Certificate Services privilege escalation","severity":"high","exploited":false,"published_at":"2026-07-14T18:18:08.057+00:00","url":"https://junglewise.ai/threats/cve-2026-54121-microsoft-active-directory-certificate-services-privilege"},{"cve":"CVE-2026-50686","cvss":8.1,"slug":"cve-2026-50686-microsoft-windows-ole-type-confusion-remote-code-execution","title":"Microsoft Windows OLE type confusion remote code execution","severity":"high","exploited":false,"published_at":"2026-07-14T18:18:03.9+00:00","url":"https://junglewise.ai/threats/cve-2026-50686-microsoft-windows-ole-type-confusion-remote-code-execution"},{"cve":"CVE-2026-50685","cvss":7.5,"slug":"cve-2026-50685-microsoft-windows-dhcp-server-double-free-remote-code-execution","title":"Microsoft Windows DHCP Server double free remote code execution","severity":"high","exploited":false,"published_at":"2026-07-14T18:18:03.603+00:00","url":"https://junglewise.ai/threats/cve-2026-50685-microsoft-windows-dhcp-server-double-free-remote-code-execution"},{"cve":"CVE-2026-50684","cvss":4.8,"slug":"cve-2026-50684-microsoft-ad-fs-cross-site-scripting-in-web-page-generation","title":"Microsoft AD FS cross-site scripting in web page generation","severity":"medium","exploited":false,"published_at":"2026-07-14T18:18:03.163+00:00","url":"https://junglewise.ai/threats/cve-2026-50684-microsoft-ad-fs-cross-site-scripting-in-web-page-generation"},{"cve":"CVE-2026-50683","cvss":8,"slug":"cve-2026-50683-microsoft-windows-dhcp-server-heap-overflow-privilege-escalation","title":"Microsoft Windows DHCP Server heap overflow privilege escalation","severity":"high","exploited":false,"published_at":"2026-07-14T18:18:02.967+00:00","url":"https://junglewise.ai/threats/cve-2026-50683-microsoft-windows-dhcp-server-heap-overflow-privilege-escalation"},{"cve":"CVE-2026-50666","cvss":8.8,"slug":"cve-2026-50666-microsoft-windows-remote-access-connection-manager-use-after-free","title":"Microsoft Windows Remote Access Connection Manager use after free privilege escalation","severity":"high","exploited":false,"published_at":"2026-07-14T18:18:00.24+00:00","url":"https://junglewise.ai/threats/cve-2026-50666-microsoft-windows-remote-access-connection-manager-use-after-free"},{"cve":"CVE-2026-50518","cvss":9.8,"slug":"cve-2026-50518-microsoft-windows-dhcp-server-heap-overflow-remote-code-execution","title":"Microsoft Windows DHCP Server heap overflow remote code execution","severity":"critical","exploited":false,"published_at":"2026-07-14T18:17:58.373+00:00","url":"https://junglewise.ai/threats/cve-2026-50518-microsoft-windows-dhcp-server-heap-overflow-remote-code-execution"},{"cve":"CVE-2026-50480","cvss":7.8,"slug":"cve-2026-50480-microsoft-windows-heap-overflow-in-wpad","title":"Microsoft Windows heap overflow in WPAD","severity":"high","exploited":false,"published_at":"2026-07-14T18:17:53.99+00:00","url":"https://junglewise.ai/threats/cve-2026-50480-microsoft-windows-heap-overflow-in-wpad"},{"cve":"CVE-2026-50435","cvss":7.8,"slug":"cve-2026-50435-microsoft-windows-overlay-filter-privilege-escalation","title":"Microsoft Windows Overlay Filter privilege escalation","severity":"high","exploited":false,"published_at":"2026-07-14T18:17:47.547+00:00","url":"https://junglewise.ai/threats/cve-2026-50435-microsoft-windows-overlay-filter-privilege-escalation"},{"cve":"CVE-2026-50426","cvss":6.8,"slug":"cve-2026-50426-microsoft-windows-dns-server-relative-path-traversal-code","title":"Microsoft Windows DNS Server relative path traversal code execution","severity":"medium","exploited":false,"published_at":"2026-07-14T18:17:46.123+00:00","url":"https://junglewise.ai/threats/cve-2026-50426-microsoft-windows-dns-server-relative-path-traversal-code"},{"cve":"CVE-2026-50394","cvss":5.5,"slug":"cve-2026-50394-microsoft-windows-media-information-disclosure","title":"Microsoft Windows Media information disclosure","severity":"medium","exploited":false,"published_at":"2026-07-14T18:17:41.56+00:00","url":"https://junglewise.ai/threats/cve-2026-50394-microsoft-windows-media-information-disclosure"},{"cve":"CVE-2026-50370","cvss":8.8,"slug":"cve-2026-50370-microsoft-windows-dhcp-server-heap-buffer-overflow","title":"Microsoft Windows DHCP Server heap buffer overflow","severity":"high","exploited":false,"published_at":"2026-07-14T18:17:37.85+00:00","url":"https://junglewise.ai/threats/cve-2026-50370-microsoft-windows-dhcp-server-heap-buffer-overflow"},{"cve":"CVE-2026-50368","cvss":7.5,"slug":"cve-2026-50368-microsoft-active-directory-federation-services-stack-overflow","title":"Microsoft Active Directory Federation Services stack overflow denial of service","severity":"high","exploited":false,"published_at":"2026-07-14T18:17:37.523+00:00","url":"https://junglewise.ai/threats/cve-2026-50368-microsoft-active-directory-federation-services-stack-overflow"},{"cve":"CVE-2026-50363","cvss":7.8,"slug":"cve-2026-50363-microsoft-windows-push-notifications-heap-overflow-privilege","title":"Microsoft Windows Push Notifications heap overflow privilege escalation","severity":"high","exploited":false,"published_at":"2026-07-14T18:17:36.737+00:00","url":"https://junglewise.ai/threats/cve-2026-50363-microsoft-windows-push-notifications-heap-overflow-privilege"},{"cve":"CVE-2026-50355","cvss":7.5,"slug":"cve-2026-50355-microsoft-active-directory-federation-services-stack-buffer","title":"Microsoft Active Directory Federation Services stack buffer overflow","severity":"high","exploited":false,"published_at":"2026-07-14T18:17:35.49+00:00","url":"https://junglewise.ai/threats/cve-2026-50355-microsoft-active-directory-federation-services-stack-buffer"},{"cve":"CVE-2026-50324","cvss":5.9,"slug":"cve-2026-50324-microsoft-ad-fs-infinite-loop-denial-of-service","title":"Microsoft AD FS infinite loop denial of service","severity":"medium","exploited":false,"published_at":"2026-07-14T18:17:31.277+00:00","url":"https://junglewise.ai/threats/cve-2026-50324-microsoft-ad-fs-infinite-loop-denial-of-service"},{"cve":"CVE-2026-57979","cvss":6.5,"slug":"cve-2026-57979-microsoft-windows-rdp-out-of-bounds-read-information-disclosure","title":"Microsoft Windows RDP out-of-bounds read information disclosure","severity":"medium","exploited":false,"published_at":"2026-07-14T17:17:11.317+00:00","url":"https://junglewise.ai/threats/cve-2026-57979-microsoft-windows-rdp-out-of-bounds-read-information-disclosure"},{"cve":"CVE-2026-56155","cvss":7.8,"slug":"cve-2026-56155-microsoft-ad-fs-privilege-escalation-via-insufficient-access","title":"Microsoft AD FS privilege escalation via insufficient access control granularity","severity":"critical","exploited":true,"published_at":"2026-07-14T17:17:09.763+00:00","url":"https://junglewise.ai/threats/cve-2026-56155-microsoft-ad-fs-privilege-escalation-via-insufficient-access"},{"cve":"CVE-2026-54987","cvss":7.8,"slug":"cve-2026-54987-microsoft-windows-heap-overflow-in-windows-overlay-filter","title":"Microsoft Windows heap overflow in Windows Overlay Filter","severity":"high","exploited":false,"published_at":"2026-07-14T17:17:06.153+00:00","url":"https://junglewise.ai/threats/cve-2026-54987-microsoft-windows-heap-overflow-in-windows-overlay-filter"},{"cve":"CVE-2026-50299","cvss":6.8,"slug":"cve-2026-50299-microsoft-windows-storage-spaces-direct-integer-overflow","title":"Microsoft Windows Storage Spaces Direct integer overflow","severity":"medium","exploited":false,"published_at":"2026-07-14T17:16:58.477+00:00","url":"https://junglewise.ai/threats/cve-2026-50299-microsoft-windows-storage-spaces-direct-integer-overflow"},{"cve":"CVE-2026-49181","cvss":7.5,"slug":"cve-2026-49181-microsoft-windows-dhcp-client-integer-underflow-privilege","title":"Microsoft Windows DHCP Client integer underflow privilege escalation","severity":"high","exploited":false,"published_at":"2026-07-14T17:16:53.277+00:00","url":"https://junglewise.ai/threats/cve-2026-49181-microsoft-windows-dhcp-client-integer-underflow-privilege"}],"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-13","critical":3,"exploited":1,"vulnerabilities":26},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0}],"related":[{"name":"Microsoft Windows","slug":"windows-","vulnerabilities":963,"url":"https://junglewise.ai/threats/technologies/windows-"},{"name":"Microsoft Windows 10","slug":"windows-10","vulnerabilities":588,"url":"https://junglewise.ai/threats/technologies/windows-10"},{"name":"Microsoft Windows 11","slug":"windows-11","vulnerabilities":493,"url":"https://junglewise.ai/threats/technologies/windows-11"},{"name":"Microsoft Windows Server 2012","slug":"windows-server-2012","vulnerabilities":293,"url":"https://junglewise.ai/threats/technologies/windows-server-2012"},{"name":"Microsoft Windows Server 2016","slug":"windows-server-2016","vulnerabilities":213,"url":"https://junglewise.ai/threats/technologies/windows-server-2016"},{"name":"Microsoft Windows Server 2019","slug":"windows-server-2019","vulnerabilities":211,"url":"https://junglewise.ai/threats/technologies/windows-server-2019"},{"name":"Microsoft Windows 11 24h2","slug":"windows-11-24h2","vulnerabilities":192,"url":"https://junglewise.ai/threats/technologies/windows-11-24h2"},{"name":"Microsoft Windows Server 2022","slug":"windows-server-2022","vulnerabilities":178,"url":"https://junglewise.ai/threats/technologies/windows-server-2022"},{"name":"Microsoft Edge","slug":"edge-chromium-based","vulnerabilities":167,"url":"https://junglewise.ai/threats/technologies/edge-chromium-based"},{"name":"Microsoft Windows 11 25h2","slug":"windows-11-25h2","vulnerabilities":161,"url":"https://junglewise.ai/threats/technologies/windows-11-25h2"},{"name":"Microsoft Windows 11 Version 26H1","slug":"windows-11-version-26h1","vulnerabilities":135,"url":"https://junglewise.ai/threats/technologies/windows-11-version-26h1"},{"name":"Microsoft Windows Server 2025","slug":"windows-server-2025","vulnerabilities":124,"url":"https://junglewise.ai/threats/technologies/windows-server-2025"}],"technology":{"hub":true,"name":"Microsoft Windows Server 2012 R2","slug":"windows-server-2012-r2","vendor":{"name":"Microsoft","slug":"microsoft","url":"https://junglewise.ai/threats/vendors/microsoft"},"aliases":[],"category":"operating-system","homepage":"https://www.microsoft.com/windows-server","description":"A server operating system based on the Windows 8.1 codebase.","url":"https://junglewise.ai/threats/technologies/windows-server-2012-r2"},"most_severe":[{"cve":"CVE-2026-56155","cvss":7.8,"slug":"cve-2026-56155-microsoft-ad-fs-privilege-escalation-via-insufficient-access","title":"Microsoft AD FS privilege escalation via insufficient access control granularity","severity":"critical","exploited":true,"published_at":"2026-07-14T17:17:09.763+00:00","url":"https://junglewise.ai/threats/cve-2026-56155-microsoft-ad-fs-privilege-escalation-via-insufficient-access"},{"cve":"CVE-2026-56159","cvss":9.8,"slug":"cve-2026-56159-microsoft-windows-dhcp-server-heap-overflow-remote-code-execution","title":"Microsoft Windows DHCP Server heap overflow remote code execution","severity":"critical","exploited":false,"published_at":"2026-07-14T18:18:22.797+00:00","url":"https://junglewise.ai/threats/cve-2026-56159-microsoft-windows-dhcp-server-heap-overflow-remote-code-execution"},{"cve":"CVE-2026-50518","cvss":9.8,"slug":"cve-2026-50518-microsoft-windows-dhcp-server-heap-overflow-remote-code-execution","title":"Microsoft Windows DHCP Server heap overflow remote code execution","severity":"critical","exploited":false,"published_at":"2026-07-14T18:17:58.373+00:00","url":"https://junglewise.ai/threats/cve-2026-50518-microsoft-windows-dhcp-server-heap-overflow-remote-code-execution"},{"cve":"CVE-2026-56647","cvss":8.8,"slug":"cve-2026-56647-microsoft-windows-remote-access-service-privilege-escalation","title":"Microsoft Windows Remote Access Service privilege escalation","severity":"high","exploited":false,"published_at":"2026-07-14T18:18:30.93+00:00","url":"https://junglewise.ai/threats/cve-2026-56647-microsoft-windows-remote-access-service-privilege-escalation"},{"cve":"CVE-2026-54121","cvss":8.8,"slug":"cve-2026-54121-microsoft-active-directory-certificate-services-privilege","title":"Microsoft Active Directory Certificate Services privilege escalation","severity":"high","exploited":false,"published_at":"2026-07-14T18:18:08.057+00:00","url":"https://junglewise.ai/threats/cve-2026-54121-microsoft-active-directory-certificate-services-privilege"},{"cve":"CVE-2026-50666","cvss":8.8,"slug":"cve-2026-50666-microsoft-windows-remote-access-connection-manager-use-after-free","title":"Microsoft Windows Remote Access Connection Manager use after free privilege escalation","severity":"high","exploited":false,"published_at":"2026-07-14T18:18:00.24+00:00","url":"https://junglewise.ai/threats/cve-2026-50666-microsoft-windows-remote-access-connection-manager-use-after-free"},{"cve":"CVE-2026-50370","cvss":8.8,"slug":"cve-2026-50370-microsoft-windows-dhcp-server-heap-buffer-overflow","title":"Microsoft Windows DHCP Server heap buffer overflow","severity":"high","exploited":false,"published_at":"2026-07-14T18:17:37.85+00:00","url":"https://junglewise.ai/threats/cve-2026-50370-microsoft-windows-dhcp-server-heap-buffer-overflow"},{"cve":"CVE-2026-48564","cvss":8.8,"slug":"cve-2026-48564-microsoft-windows-dhcp-server-heap-buffer-overflow","title":"Microsoft Windows DHCP Server heap buffer overflow","severity":"high","exploited":false,"published_at":"2026-07-14T17:16:49.873+00:00","url":"https://junglewise.ai/threats/cve-2026-48564-microsoft-windows-dhcp-server-heap-buffer-overflow"},{"cve":"CVE-2026-50686","cvss":8.1,"slug":"cve-2026-50686-microsoft-windows-ole-type-confusion-remote-code-execution","title":"Microsoft Windows OLE type confusion remote code execution","severity":"high","exploited":false,"published_at":"2026-07-14T18:18:03.9+00:00","url":"https://junglewise.ai/threats/cve-2026-50686-microsoft-windows-ole-type-confusion-remote-code-execution"},{"cve":"CVE-2026-33826","cvss":8,"epss":0.0054,"slug":"cve-2026-33826-microsoft-windows-active-directory-improper-input-validation","title":"Microsoft Windows Active Directory improper input validation remote code execution","severity":"high","exploited":false,"published_at":"2026-04-14T18:17:35.267+00:00","url":"https://junglewise.ai/threats/cve-2026-33826-microsoft-windows-active-directory-improper-input-validation"}],"generated_at":"2026-09-26T09:24:00.138874+00:00"}