Use after free in Windows DNS allows an authorized attacker to execute code over a network.
Metrics
Affected Vendors & Products
References
History
Thu, 10 Sep 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 09 Sep 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Microsoft windows Server 2025 (server Core Installation)
|
|
| Vendors & Products |
Microsoft windows Server 2025 (server Core Installation)
|
Tue, 08 Sep 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Use after free in Windows DNS allows an authorized attacker to execute code over a network. | |
| Title | Windows DNS Server Remote Code Execution Vulnerability | |
| First Time appeared |
Microsoft
Microsoft windows Server 2025 |
|
| Weaknesses | CWE-416 | |
| CPEs | cpe:2.3:o:microsoft:windows_server_2025:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Microsoft
Microsoft windows Server 2025 |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: microsoft
Published: 2026-09-08T17:17:03.340Z
Updated: 2026-09-10T13:07:16.126Z
Reserved: 2026-08-10T18:14:23.516Z
Link: CVE-2026-72928
Updated: 2026-09-10T13:00:57.678Z
Status : Undergoing Analysis
Published: 2026-09-08T18:20:17.103
Modified: 2026-09-10T14:17:06.110
Link: CVE-2026-72928
No data.