QID 730853
Date Published: 2023-07-26
QID 730853: Microsoft Windows Domain Name System (DNS) Server Remote Code Execution (RCE) Vulnerability for March 2021
Microsoft Windows Domain Name System (DNS) Server Security Update - March 2021
Operating Systems: Windows Server 2016, Windows Server 2019, Windows Server 2012, Windows Server 2012 R2, Windows Server 2008 and Windows Server 2008 R2
QID Detection Logic:
Unauthenticated: This QID checks for vulnerable version of Microsoft DNS by checking the DNS version exposed in the banner.
Successful exploitation of this vulnerability may allow an unauthenticated attacker to execute arbitrary code on the target system.
Solution
Vendor has released patch. Please refer to CVE-2021-26894 for more information.
Vendor References
- Microsoft Windows DNS Server Security Advisory -
msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2021-26894
CVEs related to QID 730853
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| Microsoft Windows DNS Server Security Advisory |
|