A AegiFlow
UNKNOWNKNOWN EXPLOITED

CVE-2020-1350

Microsoft Windows DNS Server Remote Code Execution Vulnerability

Published
2021-11-03
Modified
2026-07-31
Sources
cisa-kev

Summary

Microsoft Windows DNS Servers fail to properly handle requests, allowing an attacker to perform remote code execution in the context of the Local System Account. The vulnerability is also known under the moniker of SIGRed.

References

Includes data from the CISA Known Exploited Vulnerabilities catalog.

CVE® is a registered trademark of The MITRE Corporation. CVE content reproduced under the CVE Terms of Use; copyright designation © MITRE.