Impact
The vulnerability stems from Windows DHCP Server storing passwords in a recoverable format, allowing an attacker with authorized access to retrieve those credential values over the network. This weakness, classified as CWE‑257 (Incorrect Credential Storage), directly threatens the confidentiality of sensitive information and can serve as a foothold for further compromise.
Affected Systems
Microsoft Windows 10 Version 1607, Windows 10 Version 1809, Windows Server 2012, Windows Server 2012 (Server Core), Windows Server 2012 R2, Windows Server 2012 R2 (Server Core), Windows Server 2016, Windows Server 2016 (Server Core), Windows Server 2019, Windows Server 2019 (Server Core), Windows Server 2022, Windows Server 2025, Windows Server 2025 (Server Core).
Risk and Exploitability
The CVSS score of 6.5 indicates a moderate impact, and the EPSS score is not available, implying no quantitative estimation of exploitation likelihood. The vulnerability is not listed in the CISA KEV catalog, suggesting no widespread exploitation has been publicly documented. The likely attack vector is an authorized or privileged user who can access the DHCP server network; therefore, the risk is elevated for insiders or compromised accounts but limited for external attackers without sufficient privileges.
OpenCVE Enrichment