CVE-2026-62715: Windows DHCP Server Information Disclosure Vulnerability
Published Aug 11, 2026
·Updated
Integer underflow (wrap or wraparound) in Windows DHCP Server allows an unauthorized attacker to disclose information over an adjacent network.
Other sources
Windows DHCP Server Information Disclosure Vulnerability
— Microsoft
Affected Software
24 affected componentsFixes available
Microsoft Windows Server 2016<10.0.14393.9418
10.0.14393.9418
Microsoft Windows Server 2022<10.0.20348.5499, <10.0.20348.5440
10.0.20348.549910.0.20348.5440
Microsoft Windows Server 2025<10.0.26100.33296, <10.0.26100.33222
10.0.26100.3329610.0.26100.33222
Microsoft Windows 10=1607
10.0.14393.9418
Microsoft Windows Server 2016<10.0.14393.9418
10.0.14393.9418
Microsoft Windows 10=1607
10.0.14393.9418
Microsoft Windows Server 2022<10.0.20348.5499, <10.0.20348.5440
10.0.20348.549910.0.20348.5440
Microsoft Windows Server 2025<10.0.26100.33296, <10.0.26100.33222
10.0.26100.3329610.0.26100.33222
Microsoft Windows Server 2019<10.0.17763.9115
10.0.17763.9115
Microsoft Windows Server 2019<10.0.17763.9115
10.0.17763.9115
Microsoft Windows 10=1809
10.0.17763.9115
Microsoft Windows 10=1809
10.0.17763.9115
Microsoft Windows Server 2012 R2<6.3.9600.23338
6.3.9600.23338
Microsoft Windows Server 2012 R2<6.3.9600.23338
6.3.9600.23338
Microsoft Windows 10 1607<10.0.14393.9418
Microsoft Windows 10 1607<10.0.14393.9418
Microsoft Windows 10 1809<10.0.17763.9115
Microsoft Windows 10 1809<10.0.17763.9115
Microsoft Windows Server 2012
Microsoft Windows Server 2012=r2
Microsoft Windows Server 2016<10.0.14393.9418
Microsoft Windows Server 2019<10.0.17763.9115
Microsoft Windows Server 2022<10.0.20348.5440
Microsoft Windows Server 2025<10.0.26100.33222
Remediation
Event History
Aug 11, 2026
CVE Published
via Microsoft·02:00 PM
Data Sourced
via Microsoft·02:00 PM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·02:00 PM
Affected Software
Updated
via Microsoft·02:00 PM
Description
CVE Published
via MITRE·05:04 PM
Data Sourced
via MITRE·05:04 PM
DescriptionSeverity
Data Sourced
via NVD·05:18 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2026-62715?
CVE-2026-62715 has a medium severity score of 6.5.
2
How do I fix CVE-2026-62715?
You can resolve CVE-2026-62715 by applying the available patch from Microsoft.
3
What systems are affected by CVE-2026-62715?
CVE-2026-62715 affects Microsoft Windows 10 and multiple versions of Windows Server including 2012 R2, 2016, 2019, 2020, and 2022.
4
What type of vulnerability is CVE-2026-62715?
CVE-2026-62715 is classified as an integer underflow vulnerability.
5
What can attackers achieve with CVE-2026-62715?
Attackers can exploit CVE-2026-62715 to disclose sensitive information over an adjacent network.