Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2026-45602

Опубликовано: 16 июн. 2026
Источник: msrc
CVSS3: 9.1
EPSS Низкий

Описание

Windows Dynamic Host Configuration Protocol (DHCP) Tampering Vulnerability

No cwe for this issue in Windows DHCP Server allows an unauthorized attacker to perform tampering over a network.

FAQ

How could an attacker exploit this vulnerability?

An authenticated user could exploit this vulnerability by sending specially crafted network traffic to a server configured for use as a Dynamic Host Configuration Protocol (DHCP) Server.

Обновления

ПродуктСтатьяОбновление
Windows Server 2012
Windows Server 2012 (Server Core installation)
Windows Server 2012 R2
Windows Server 2012 R2 (Server Core installation)
Windows Server 2016
Windows 10 Version 1607 for 32-bit Systems
Windows 10 Version 1607 for x64-based Systems
Windows Server 2016 (Server Core installation)
Windows 10 Version 1809 for 32-bit Systems
Windows 10 Version 1809 for x64-based Systems

Показывать по

Возможность эксплуатации

Publicly Disclosed

No

Exploited

No

Latest Software Release

Exploitation Less Likely

EPSS

Процентиль: 29%
0.00366
Низкий

9.1 Critical

CVSS3

Связанные уязвимости

CVSS3: 9.1
nvd
около 2 месяцев назад

No cwe for this issue in Windows DHCP Server allows an unauthorized attacker to perform tampering over a network.

CVSS3: 9.1
github
около 2 месяцев назад

No cwe for this issue in Windows DHCP Server allows an unauthorized attacker to perform tampering over a network.

CVSS3: 9.1
fstec
около 2 месяцев назад

Уязвимость службы DHCP-сервера операционных систем Windows, позволяющая нарушителю получить несанкционированный доступ к конфиденциальной информации

EPSS

Процентиль: 29%
0.00366
Низкий

9.1 Critical

CVSS3