CVE-2022-26825: Windows DNS Server Remote Code Execution Vulnerability
Published Apr 12, 2022
·Updated
Windows DNS Server Remote Code Execution Vulnerability
Affected Software
11 affected componentsFixes available
Microsoft Windows Server 2016
Microsoft Windows Server 2016=20h2
Microsoft Windows Server 2019
Microsoft Windows Server 2022
Microsoft Windows Server=20H2
Microsoft Windows Server 2019
Microsoft Windows Server 2019
Microsoft Windows Server 2022
Microsoft Windows Server 2022
Microsoft Windows Server 2016
Microsoft Windows Server 2016
Event History
Apr 12, 2022
CVE Published
via Microsoft·08:00 AM
Data Sourced
via Microsoft·08:00 AM
DescriptionSeverityWeakness
Apr 15, 2022
CVE Published
via MITRE·07:05 PM
Data Sourced
via MITRE·07:05 PM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2022-26825?
CVE-2022-26825 has been rated as critical in severity due to its potential for remote code execution.
2
How do I fix CVE-2022-26825?
To fix CVE-2022-26825, apply the appropriate security patches as provided by Microsoft for your affected Windows Server version.
3
Which versions of Windows Server are affected by CVE-2022-26825?
CVE-2022-26825 affects Windows Server 2016, 2019, 2022, and the 20H2 version of Windows Server.
4
What type of vulnerability is CVE-2022-26825?
CVE-2022-26825 is a remote code execution vulnerability that exploits the Windows DNS Server.
5
Can CVE-2022-26825 be exploited remotely?
Yes, CVE-2022-26825 can be exploited remotely by attackers to execute arbitrary code on the target server.