QID 92006
Date Published: 2023-04-12
QID 92006: Microsoft Windows Domain Name System (DNS) Server Remote Code Execution (RCE) Vulnerability for April 2023
Microsoft Windows Domain Name System (DNS) Server Security Update - April 2023
Operating Systems:
The KB Articles associated with the update:
5025285
5025288
5025287
5025272
5025279
5025277
5025271
5025273
5025228
5025230
5025229
QID Detection Logic (Authenticated):
This QID checks for the file version of dns.exe
Successful exploitation of this vulnerability may allow an attacker with specific elevated privileges to execute arbitrary command on the target system.
Solution
Vendor References
- KB5025228 -
support.microsoft.com/en-in/help/5025228 - KB5025229 -
support.microsoft.com/en-in/help/5025229 - KB5025230 -
support.microsoft.com/en-in/help/5025230 - KB5025271 -
support.microsoft.com/en-in/help/5025271 - KB5025272 -
support.microsoft.com/en-in/help/5025272 - KB5025273 -
support.microsoft.com/en-in/help/5025273 - KB5025277 -
support.microsoft.com/en-in/help/5025277 - KB5025279 -
support.microsoft.com/en-in/help/5025279 - KB5025285 -
support.microsoft.com/en-in/help/5025285 - KB5025287 -
support.microsoft.com/en-in/help/5025287 - KB5025288 -
support.microsoft.com/en-in/help/5025288
CVEs related to QID 92006
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| 5025228 |
|
||
| 5025229 |
|
||
| 5025230 |
|
||
| 5025271 |
|
||
| 5025272 |
|
||
| 5025273 |
|
||
| 5025277 |
|
||
| 5025279 |
|
||
| 5025285 |
|
||
| 5025287 |
|
||
| 5025288 |
|