CVE-2022-26812: Windows DNS Server Remote Code Execution Vulnerability
Published Apr 12, 2022
·Updated
Windows DNS Server Remote Code Execution Vulnerability
Affected Software
25 affected componentsFixes available
Microsoft Windows Server=20H2
Microsoft Windows Server 2012 R2
Microsoft Windows Server 2012 R2
Microsoft Windows Server 2012
Microsoft Windows Server 2012
Microsoft Windows Server 2008=sp2
Microsoft Windows Server 2008=r2-sp1
Microsoft Windows Server 2012
Microsoft Windows Server 2012=r2
Microsoft Windows Server 2016
Microsoft Windows Server 2016=20h2
Microsoft Windows Server 2019
Microsoft Windows Server 2022
Microsoft Windows Server 2008
Microsoft Windows Server 2008
Microsoft Windows Server 2008
Microsoft Windows Server 2008
Microsoft Windows Server 2019
Microsoft Windows Server 2019
Microsoft Windows Server 2022
Microsoft Windows Server 2022
Microsoft Windows Server 2016
Microsoft Windows Server 2016
Microsoft Windows Server 2008 R2
Microsoft Windows Server 2008 R2
Event History
Apr 12, 2022
CVE Published
via Microsoft·08:00 AM
Data Sourced
via Microsoft·08:00 AM
DescriptionSeverityWeakness
Apr 15, 2022
CVE Published
via MITRE·07:04 PM
Data Sourced
via MITRE·07:04 PM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2022-26812?
CVE-2022-26812 has a CVSS score indicating it is a critical vulnerability.
2
How do I fix CVE-2022-26812?
To fix CVE-2022-26812, apply the appropriate security patches for your affected version of Windows Server.
3
Which versions of Windows Server are affected by CVE-2022-26812?
CVE-2022-26812 affects several versions including Windows Server 2016, 2019, 2022, and earlier versions such as 2008 R2 and 2012 R2.
4
What type of vulnerability is CVE-2022-26812?
CVE-2022-26812 is classified as a Remote Code Execution vulnerability affecting Windows DNS Server.
5
Can CVE-2022-26812 be exploited remotely?
Yes, CVE-2022-26812 can be exploited remotely, allowing an attacker to execute arbitrary code on the affected system.