CVE-2026-56181: Windows Network Address Translation (NAT) Spoofing Vulnerability
Origin validation error in Windows Network Address Translation (NAT) allows an unauthorized attacker to perform spoofing over an adjacent network.
Other sources
Windows Network Address Translation (NAT) Spoofing Vulnerability
— Microsoft
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.28000.2525Patch KB5101649 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.26100.8875Patch KB5101650 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.26100.33158Patch KB5099536 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.26200.8875Patch KB5101650
Event History
Frequently Asked Questions
What is the severity of CVE-2026-56181?
CVE-2026-56181 has a high severity score of 8.3.
How do I fix CVE-2026-56181?
To fix CVE-2026-56181, you should apply the latest security updates provided by Microsoft for affected Windows versions.
What systems are affected by CVE-2026-56181?
CVE-2026-56181 affects Microsoft Windows 11 and Microsoft Windows Server 2025.
What are the potential impacts of CVE-2026-56181?
The potential impact of CVE-2026-56181 includes unauthorized spoofing over adjacent networks, compromising network integrity.
When was CVE-2026-56181 published?
CVE-2026-56181 was published on July 14, 2026.