Windows Server DHCP service
by Microsoft
CVEs (38)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2019-0626 | Cri | 0.69 | 9.8 | 0.61 | Mar 5, 2019 | A memory corruption vulnerability exists in the Windows Server DHCP service when an attacker sends specially crafted packets to a DHCP server, aka 'Windows DHCP Server Remote Code Execution Vulnerability'. | ||
| CVE-2019-0785 | Cri | 0.68 | 9.8 | 0.48 | Jul 15, 2019 | A memory corruption vulnerability exists in the Windows Server DHCP service when an attacker sends specially crafted packets to a DHCP failover server, aka 'Windows DHCP Server Remote Code Execution Vulnerability'. | ||
| CVE-2019-0725 | Cri | 0.66 | 9.8 | 0.26 | May 16, 2019 | A memory corruption vulnerability exists in the Windows Server DHCP service when processing specially crafted packets, aka 'Windows DHCP Server Remote Code Execution Vulnerability'. | ||
| CVE-2022-30216 | Hig | 0.64 | 8.8 | 0.89 | Jul 12, 2022 | Windows Server Service Tampering Vulnerability | ||
| CVE-2019-1213 | Cri | 0.64 | 9.8 | 0.04 | Aug 14, 2019 | A memory corruption vulnerability exists in the Windows Server DHCP service when an attacker sends specially crafted packets to a DHCP server. An attacker who successfully exploited the vulnerability could run arbitrary code on the DHCP server. To exploit the vulnerability, an… | ||
| CVE-2019-1212 | Cri | 0.64 | 9.8 | 0.07 | Aug 14, 2019 | A memory corruption vulnerability exists in the Windows Server DHCP service when processing specially crafted packets. An attacker who successfully exploited the vulnerability could cause the DHCP server service to stop responding. To exploit the vulnerability, a remote… | ||
| CVE-2026-45602 | Cri | 0.59 | 9.1 | 0.00 | Jun 9, 2026 | No cwe for this issue in Windows DHCP Server allows an unauthorized attacker to perform tampering over a network. | ||
| CVE-2026-62823 | Hig | 0.57 | 8.8 | 0.01 | Aug 11, 2026 | Heap-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code over an adjacent network. | ||
| CVE-2022-38045 | Hig | 0.57 | 8.8 | 0.02 | Oct 11, 2022 | Windows Server Service Elevation of Privilege Vulnerability | ||
| CVE-2022-24541 | Hig | 0.57 | 8.8 | 0.03 | Apr 15, 2022 | Windows Server Service Remote Code Execution Vulnerability | ||
| CVE-2026-62812 | Hig | 0.51 | 7.8 | 0.00 | Aug 11, 2026 | Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-62807 | Hig | 0.51 | 7.8 | 0.00 | Aug 11, 2026 | Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-62803 | Hig | 0.51 | 7.8 | 0.00 | Aug 11, 2026 | Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-62776 | Hig | 0.51 | 7.8 | 0.00 | Aug 11, 2026 | Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-62761 | Hig | 0.51 | 7.8 | 0.00 | Aug 11, 2026 | Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally. | ||
| CVE-2025-33050 | Hig | 0.49 | 7.5 | 0.02 | Jun 10, 2025 | Protection mechanism failure in Windows DHCP Server allows an unauthorized attacker to deny service over a network. | ||
| CVE-2025-32725 | Hig | 0.49 | 7.5 | 0.02 | Jun 10, 2025 | Protection mechanism failure in Windows DHCP Server allows an unauthorized attacker to deny service over a network. | ||
| CVE-2023-32022 | Hig | 0.49 | 7.6 | 0.01 | Jun 14, 2023 | Windows Server Service Security Feature Bypass Vulnerability | ||
| CVE-2020-1031 | Hig | 0.49 | 7.5 | 0.05 | Sep 11, 2020 | An information disclosure vulnerability exists in the way that the Windows Server DHCP service improperly discloses the contents of its memory. To exploit the vulnerability, an unauthenticated attacker could send a specially crafted packet to an affected DHCP server. … | ||
| CVE-2019-1206 | Hig | 0.49 | 7.5 | 0.05 | Aug 14, 2019 | A memory corruption vulnerability exists in the Windows Server DHCP service when an attacker sends specially crafted packets to a DHCP failover server. An attacker who successfully exploited the vulnerability could cause the DHCP service to become nonresponsive. To exploit the… |
- risk 0.69cvss 9.8epss 0.61
A memory corruption vulnerability exists in the Windows Server DHCP service when an attacker sends specially crafted packets to a DHCP server, aka 'Windows DHCP Server Remote Code Execution Vulnerability'.
- risk 0.68cvss 9.8epss 0.48
A memory corruption vulnerability exists in the Windows Server DHCP service when an attacker sends specially crafted packets to a DHCP failover server, aka 'Windows DHCP Server Remote Code Execution Vulnerability'.
- risk 0.66cvss 9.8epss 0.26
A memory corruption vulnerability exists in the Windows Server DHCP service when processing specially crafted packets, aka 'Windows DHCP Server Remote Code Execution Vulnerability'.
- risk 0.64cvss 8.8epss 0.89
Windows Server Service Tampering Vulnerability
- risk 0.64cvss 9.8epss 0.04
A memory corruption vulnerability exists in the Windows Server DHCP service when an attacker sends specially crafted packets to a DHCP server. An attacker who successfully exploited the vulnerability could run arbitrary code on the DHCP server. To exploit the vulnerability, an…
- risk 0.64cvss 9.8epss 0.07
A memory corruption vulnerability exists in the Windows Server DHCP service when processing specially crafted packets. An attacker who successfully exploited the vulnerability could cause the DHCP server service to stop responding. To exploit the vulnerability, a remote…
- risk 0.59cvss 9.1epss 0.00
No cwe for this issue in Windows DHCP Server allows an unauthorized attacker to perform tampering over a network.
- risk 0.57cvss 8.8epss 0.01
Heap-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code over an adjacent network.
- risk 0.57cvss 8.8epss 0.02
Windows Server Service Elevation of Privilege Vulnerability
- risk 0.57cvss 8.8epss 0.03
Windows Server Service Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.00
Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.
- risk 0.51cvss 7.8epss 0.00
Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.
- risk 0.51cvss 7.8epss 0.00
Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.
- risk 0.51cvss 7.8epss 0.00
Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.
- risk 0.51cvss 7.8epss 0.00
Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.
- risk 0.49cvss 7.5epss 0.02
Protection mechanism failure in Windows DHCP Server allows an unauthorized attacker to deny service over a network.
- risk 0.49cvss 7.5epss 0.02
Protection mechanism failure in Windows DHCP Server allows an unauthorized attacker to deny service over a network.
- risk 0.49cvss 7.6epss 0.01
Windows Server Service Security Feature Bypass Vulnerability
- risk 0.49cvss 7.5epss 0.05
An information disclosure vulnerability exists in the way that the Windows Server DHCP service improperly discloses the contents of its memory. To exploit the vulnerability, an unauthenticated attacker could send a specially crafted packet to an affected DHCP server. …
- risk 0.49cvss 7.5epss 0.05
A memory corruption vulnerability exists in the Windows Server DHCP service when an attacker sends specially crafted packets to a DHCP failover server. An attacker who successfully exploited the vulnerability could cause the DHCP service to become nonresponsive. To exploit the…
Page 1 of 2