Impact
The Windows DHCP Server contains an out‑of‑bounds read flaw that allows an attacker with sufficient privileges to execute code locally on the server. This exploits a memory corruption vulnerability that can lead to arbitrary code execution, potentially giving the attacker control of the DHCP service, escalation of privileges, and further movement within the network.
Affected Systems
Affected products include Microsoft Windows 10 (Version 1607 and 1809) and Windows Server releases 2012, 2012 R2, 2016, 2019, 2022, and 2025, both in full and Server Core configurations. The vulnerability applies to the Windows DHCP Server component on these operating systems.
Risk and Exploitability
The vulnerability has a CVSS score of 6.4, indicating moderate severity. No EPSS score is available and the issue is not yet listed in the CISA KEV catalogue, suggesting that widespread exploitation has not been reported. Exploitation requires an authorized user or attacker with administrative access to the DHCP server; the exploit leverages local privilege to trigger the out‑of‑bounds read and subsequent code execution. As a result, the risk is limited to environments where the attacker can reach the DHCP service with sufficient rights.
OpenCVE Enrichment