CVE-2020-1350—Microsoft Windows DNS Server Remote Code Execution Vulnerability
PUBLISHEDvulnerability record
2021-11-03 · last modified December 22, 2025
Metadata
Vulnerability Name
Microsoft Windows DNS Server Remote Code Execution Vulnerability
Description
Microsoft Windows DNS Servers fail to properly handle requests, allowing an attacker to perform remote code execution in the context of the Local System Account. The vulnerability is also known under the moniker of SIGRed.
Known To Be Used in Ransomware Campaigns?
Action
Apply updates per vendor instructions.