Loading HuntDB...

Microsoft Windows DNS Server Remote Code Execution Vulnerability

Added Nov. 3, 2021 Due July 24, 2020 CVE-2020-1350
Overdue Microsoft / Windows

Description

Microsoft Windows DNS Servers fail to properly handle requests, allowing an attacker to perform remote code execution in the context of the Local System Account. The vulnerability is also known under the moniker of SIGRed.

Required Action

Apply updates per vendor instructions.

References

Additional Information

Catalog Version
2025.01.24
Catalog Released
Jan. 24, 2025
Days Until Due
0 days
Last Updated
4 months, 2 weeks ago