Impact
The vulnerability is a relative path traversal flaw in the Windows DNS Server that permits an attacker with authorized access to execute arbitrary code on a target system over an adjacent network. The flaw allows manipulation of file paths to bypass normal file access restrictions, enabling code execution on the target machine.
Affected Systems
The vulnerability affects Microsoft Windows operating systems, including Windows 10 versions 1607 and 1809 and all Windows Server releases from 2012 through 2025. Both full and Server Core installations are impacted. These systems run DNS Server services that, when left unpatched, can be abused by attackers who have legitimate credentials within the same network or have local administrative rights.
Risk and Exploitability
The CVSS score of 6.8 indicates a moderate severity level. The EPSS score of less than 1% shows a very low likelihood of exploitation in the wild, and the vulnerability is not listed in the CISA KEV catalog. Based on the description, the likely attack vector requires an authorized attacker, such as an insider or compromised account, to perform the exploit remotely within the same LAN or adjacent network segment. Consequently, while the technical capabilities are significant, the practical risk remains contingent on internal security posture and user privileges.
OpenCVE Enrichment