CVE-2026-50370
DHCP Server Service Remote Code Execution Vulnerability
Description
Heap-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code over an adjacent network.
In plain language
AI Act nowCVE-2026-50370 is a Windows DHCP Server security flaw that can let a remote attacker run code from the network; if your small business runs DHCP Server on affected Windows versions, you should treat this as urgent and patch now.
CVE-2026-50370 is a Windows DHCP Server Remote Code Execution issue caused by a memory-safety weakness (heap buffer overflow) that can be triggered by an attacker from an adjacent network segment against the DHCP Server service.
What to do now
- Check whether you run the Windows DHCP Server role/service on any of these systems: Windows 10, Windows Server 2012/2012 R2, 2016, 2019, 2022, or 2025.
- If DHCP Server is in use on affected versions, update immediately to the fixed versions listed by Microsoft for CVE-2026-50370.
- Verify updates completed and reboot if your organization’s update policy requires it.
- If you can’t patch right away, restrict network access to the DHCP Server so only the intended subnets/clients can reach it, and document the temporary risk acceptance until patching is complete.
CVSS Vector Breakdown
AV:AAttack VectorAC:LAttack ComplexityPR:NPrivileges RequiredUI:NUser InteractionS:UScopeC:HConfidentialityI:HIntegrityA:HAvailabilityWeaknesses
Affected Products
Exploitability
Attack Graph
Click technique nodes for MITRE ATT&CK details · drag to pan · Ctrl/⌘ + scroll to zoom, or go fullscreen.
MITRE ATT&CK
2 techniquesReferences
- Цунами уязвимостей: июльский Microsoft Patch Tuesdayru-ru·Kaspersky Daily (RU)· Patch Microsoft patch-tuesday
- Microsoft and Adobe Patch Tuesday, July 2026 Security Update Reviewen-us·Qualys Security Blog· Patch Windows patch-tuesday
- Microsoft Patch Tuesday for July 2026 — Snort rules and prominent vulnerabilitiesen·Cisco Talos· Exploited Active Directory Federation Services (AD FS) rce
- Microsoft Patch Tuesday July 2026 - The AI Acopolypse is Hereen·SANS Internet Storm Center· Exploited Windows privilege-escalation
- Microsoft July 2026 Patch Tuesday fixes massive 570 flaws, 3 zero-daysen-us·BleepingComputer· Exploited .NET zero-day
Unlock Complete Vulnerability Intelligence
Get the full picture for CVE-2026-50370 and every CVE in our database. Create a free account — no credit card required.
Create Free Account