CVE Tools

CVE-2026-62823

Windows DHCP Server Remote Code Execution Vulnerability

Published: Aug 11, 2026Updated: Aug 16, 2026 Sources: CVE List NVDCWE-122

Description

Heap-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code over an adjacent network.

In plain language

AI Act now

This Windows DHCP Server flaw could let an attacker remotely take over a machine on the network—if you run DHCP on Windows Server (or Windows 10) and it’s reachable from other networks, you should patch right away.

Executive summary

CVE-2026-62823 is a Windows DHCP Server remote code execution vulnerability (CWE-122, heap-based buffer overflow) that can be triggered by a remote, unauthorized attacker interacting with DHCP server behavior over the network.

If affected, business impact
Full server takeoverService disruption for networkingPotential theft of network credentialsWider network compromise risk

What to do now

  1. Check whether you are running Windows DHCP Server (or any Windows device acting as a DHCP server) in the affected product list.
  2. Identify your exact OS version (e.g., Windows Server 2019 build, Windows 10 build) and compare it to the fixed version numbers below.
  3. Upgrade/patch immediately to one of the fixed versions:
    • Windows 10: fixed in 10.0.14393.9418 or 10.0.17763.9121 (and 10.0.17763.9115 for the relevant servicing branch)
    • Windows Server 2012: fixed in 6.2.9200.26280
    • Windows Server 2012 R2: fixed in 6.3.9600.23338
    • Windows Server 2016: fixed in 10.0.14393.9418
    • Windows Server 2019: fixed in 10.0.17763.9121 (and 10.0.17763.9115 for the relevant servicing branch)
    • Windows Server 2022: fixed in 10.0.20348.5499 (and 10.0.20348.5440 for the relevant servicing branch)
    • Windows Server 2025: fixed in 10.0.26100.33296 (and 10.0.26100.33222 for the relevant servicing branch)
  4. If patching must be delayed, restrict who can reach the DHCP server from other networks (network segmentation/firewall rules) until the fixed update is installed.
Patch / advisory Usually a quick update

CVSS Vector Breakdown

AV:AAC:LPR:NUI:NS:UC:HI:HA:H
Exploitability
AV:AAttack Vector
Adjacent
AC:LAttack Complexity
Low
PR:NPrivileges Required
None
UI:NUser Interaction
None
Scope
S:UScope
Unchanged
Impact
C:HConfidentiality
High
I:HIntegrity
High
A:HAvailability
High

Weaknesses

Affected Products

and 13 more affected products View all →

Exploitability

Official Patch Available

Attack Graph

Products CVE Techniques Tactics

Click technique nodes for MITRE ATT&CK details · drag to pan · Ctrl/ + scroll to zoom, or go fullscreen.

MITRE ATT&CK

1 technique
Privilege Escalation
View detailed technique mapping

References

4

Unlock Complete Vulnerability Intelligence

Get the full picture for CVE-2026-62823 and every CVE in our database. Create a free account — no credit card required.

Create Free Account
Plain-language analysis
Impact assessment and exploitation scenario in plain English
Attack graph visualization
Interactive attack path and kill chain mapping
Exploit details & PoC links
ExploitDB, Metasploit, GitHub PoCs with direct links
Nuclei scanner templates
Ready-to-use vulnerability scanner templates
Full remediation guide
Patch instructions, workarounds, and compliance impact
Interactive AI chat
Ask questions about this vulnerability in natural language
Related vulnerabilities
Semantically similar CVEs and attack patterns
REST API & MCP access
Integrate vulnerability data into your workflows