Impact
An integer underflow in the Windows DHCP Server can cause a wraparound of an internal counter, enabling an unauthorized attacker to read memory beyond the intended bounds. This may result in disclosure of sensitive server data to an adversary on the same local network.
Affected Systems
Affected systems are Windows 10 1607 and 1809, and Windows Server 2012, 2012 R2, 2016, 2019, 2022, and 2025, including both standard and Server Core installations.
Risk and Exploitability
The CVSS score of 6.5 indicates medium severity, while an EPSS score of less than 1 % shows a very low likelihood that the vulnerability is exploited in the wild. The flaw is not listed in the CISA KEV catalog. Exploitation would almost certainly require an attacker to be able to transmit specially crafted DHCP packets to the target—i.e., to be on or connected to the same local network as the DHCP server.
OpenCVE Enrichment