CVE-2021-26894: Windows DNS Server Remote Code Execution Vulnerability
Published Mar 11, 2021
·Updated
Windows DNS Server Remote Code Execution Vulnerability
Affected Software
10 affected components
Microsoft Windows Server 2008=r2-sp1
Microsoft Windows Server 2008=sp2
Microsoft Windows Server 2008 X86=sp2
Microsoft Windows Server 2012
Microsoft Windows Server 2012=r2
Microsoft Windows Server 2016
Microsoft Windows Server 2016=20h2
Microsoft Windows Server 2016=1909
Microsoft Windows Server 2016=2004
Microsoft Windows Server 2019
Remediation
Event History
Mar 11, 2021
CVE Published
03:43 PM
Data Sourced
03:43 PM
DescriptionSeverity
Data Sourced
via NVD·04:15 PM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2021-26894?
The severity of CVE-2021-26894 is rated as critical due to its potential for remote code execution.
2
How do I fix CVE-2021-26894?
To fix CVE-2021-26894, apply the security updates released by Microsoft for affected Windows Server versions.
3
Which software is affected by CVE-2021-26894?
CVE-2021-26894 affects multiple versions of Windows Server, including 2008, 2012, 2016, and 2019.
4
What type of vulnerability is CVE-2021-26894?
CVE-2021-26894 is a remote code execution vulnerability in the Windows DNS Server.
5
Can CVE-2021-26894 be exploited remotely?
Yes, CVE-2021-26894 can be exploited remotely by attackers to execute arbitrary code on the affected systems.