VDB
BDU%3A2020-03377
BDU%3A2020-03377
PUBLISHED
CVSS 10 CRITICAL
Уязвимость DNS-сервера операционной системы Windows, связанная с выходом операции за границы буфера в памяти, позволяющая нарушителю выполнить произвольный код
Risk Scores
CVSS 2.0
10
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Microsoft Corp | Windows Server 2008 Service Pack 2, Windows Server 2012, Windows Server 2012 R2, Windows Server 2008 R2 Service Pack 1, Windows Server 2016, Windows Server 2008 Service Pack 2 (Server Core Installation), Windows Server 2012 R2 (Server Core installation), Windows Server 2016 (Server Core installation), Windows Server 2008 R2 Service Pack 1 (Server Core installation), Windows Server 2019, Windows Server 2019 (Server Core installation), Windows Server 1903 (Server Core Installation), Windows Server 1909 (Server Core Installation), Windows Server 2004 (Server Core Installation), Windows Server 2012 (Server Core installation) |
Timeline
- Jul 17, 2020 CVE Published
- Aug 17, 2020 PoC Published
- Sep 3, 2020 CVE Updated
- Mar 19, 2026 Security Advisory
References
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1350 url
- https://www.cybersecurity-help.cz/vdb/SB2020071421 url
- https://nvd.nist.gov/vuln/detail/CVE-2020-1350 url
- https://xakep.ru/2020/07/15/july-patches-2/ url
- https://research.checkpoint.com/2020/resolving-your-way-into-domain-admin-exploiting-a-17-year-old-bug-in-windows-dns-servers/ url