CVE-2022-26826

HIGH

Windows DNS Server - Remote Code Execution

Title source: llm
STIX 2.1

Description

Windows DNS Server Remote Code Execution Vulnerability

References (1)

Core 1
Core References

Scores

CVSS v3 7.2
EPSS 0.0366
EPSS Percentile 88.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-77
Status published
Products (25)
Microsoft/Windows 10 Version 1607 10.0.14393.0 - 10.0.14393.5066
Microsoft/Windows 10 Version 1809 10.0.0 - 10.0.17763.2803
Microsoft/Windows 10 Version 1809 10.0.17763.0 - 10.0.17763.2803
Microsoft/Windows 10 Version 1909 10.0.0 - 10.0.18363.2212
Microsoft/Windows 10 Version 20H2 10.0.0 - 10.0.19042.1645
Microsoft/Windows 10 Version 21H1 10.0.0 - 10.0.19043.1645
Microsoft/Windows 10 Version 21H2 10.0.19043.0 - 10.0.19044.1645
Microsoft/Windows 11 version 21H2 10.0.0 - 10.0.22000.613
Microsoft/Windows Server 2016 10.0.14393.0 - 10.0.14393.5066
Microsoft/Windows Server 2016 (Server Core installation) 10.0.14393.0 - 10.0.14393.5066
... and 15 more
Published Apr 15, 2022
Tracked Since Feb 18, 2026