CVE-2022-26823: Windows DNS Server Remote Code Execution Vulnerability
Published Apr 12, 2022
·Updated
Windows DNS Server Remote Code Execution Vulnerability
Affected Software
11 affected componentsFixes available
Microsoft Windows Server 2016
Microsoft Windows Server 2016=20h2
Microsoft Windows Server 2019
Microsoft Windows Server 2022
Microsoft Windows Server=20H2
Microsoft Windows Server 2019
Microsoft Windows Server 2019
Microsoft Windows Server 2022
Microsoft Windows Server 2022
Microsoft Windows Server 2016
Microsoft Windows Server 2016
Event History
Apr 12, 2022
CVE Published
via Microsoft·08:00 AM
Data Sourced
via Microsoft·08:00 AM
DescriptionSeverityWeakness
Apr 15, 2022
CVE Published
via MITRE·07:05 PM
Data Sourced
via MITRE·07:05 PM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2022-26823?
CVE-2022-26823 is classified as a critical vulnerability that allows remote code execution on affected Windows DNS Servers.
2
How do I fix CVE-2022-26823?
To fix CVE-2022-26823, apply the appropriate security patches provided by Microsoft for your version of Windows Server.
3
What versions of Windows Server are affected by CVE-2022-26823?
CVE-2022-26823 affects Windows Server 2016, 2019, and 2022 across different installations.
4
Can CVE-2022-26823 be exploited remotely?
Yes, CVE-2022-26823 can be exploited remotely by an attacker to execute arbitrary code on the server.
5
What is the potential impact of CVE-2022-26823?
The potential impact of CVE-2022-26823 includes unauthorized access to sensitive information and the ability to take full control of the affected server.