QID 730855

Date Published: 2023-07-26

QID 730855: Microsoft Windows Domain Name System (DNS) Denial of Service (DoS) Vulnerability for September 2020

Microsoft Windows Domain Name System (DNS) Server Security Update - September 2020

Operating Systems: Windows Server 2016, Windows Server 2019, Windows Server 2012, Windows Server 2012 R2, Windows Server 2008 and Windows Server 2008 R2

QID Detection Logic:
Unauthenticated: This QID checks for vulnerable version of Microsoft DNS by checking the DNS version exposed in the banner.

Successful exploitation of this vulnerability may allow an attacker could cause the DNS service to become nonresponsive.

  • CVSS V3 rated as High - 7.5 severity.
  • CVSS V2 rated as Medium - 5 severity.
  • Solution
    Vendor has released patch. Please refer to CVE-2020-0836 for more information.

    Vendor References

    CVEs related to QID 730855

    Software Advisories
    Advisory ID Software Component Link
    Microsoft Windows DNS Security Advisory URL Logo msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2020-0836