CVE-2019-0785: Critical severity microsoft windows server vulnerability
Published Jul 15, 2019
·Updated
A memory corruption vulnerability exists in the Windows Server DHCP service when an attacker sends specially crafted packets to a DHCP failover server, aka 'Windows DHCP Server Remote Code Execution Vulnerability'.
Affected Software
6 affected components
Microsoft Windows Server 2012
Microsoft Windows Server 2012=r2
Microsoft Windows Server 2016
Microsoft Windows Server 2016=1803
Microsoft Windows Server 2016=1903
Microsoft Windows Server 2019
Remediation
Event History
Jul 15, 2019
CVE Published
via MITRE·06:34 PM
Data Sourced
via MITRE·06:34 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-0785?
CVE-2019-0785 has a critical severity rating, allowing for potential remote code execution.
2
How do I fix CVE-2019-0785?
To address CVE-2019-0785, apply the latest security updates provided by Microsoft for affected Windows Server versions.
3
Which versions of Windows Server are affected by CVE-2019-0785?
CVE-2019-0785 affects Windows Server 2012, 2012 R2, 2016, and 2019.
4
What type of attack does CVE-2019-0785 enable?
CVE-2019-0785 enables remote code execution through crafted DHCP packets targeting the DHCP service.
5
Are there any workarounds for CVE-2019-0785?
Microsoft recommends applying security patches as the primary mitigation for CVE-2019-0785, but there are no formal workarounds documented.