CVE-2026-62787Patch(microsoft / windows_10_1607)

LOWCVSS 7.5 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch microsoft windows_10_1607 systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Use after free in Windows DNS allows an authorized attacker to execute code over a network.

1.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-416

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • windows_10_1607
  • windows_10_1809
  • windows_server_2012
  • windows_server_2016

Threat summary

  • Patch or workaround signal is available
  • 3 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 2 signals
  • Disclosure: 1 classified signal
  • Peaked 2d ago at 1 mentions (2026-08-11); latest day: 1
  • 3 total mentions across 3 days

Affected systems

Vendors
Products
windows_10_1607windows_10_1809windows_server_2012windows_server_2016windows_server_2019windows_server_2022windows_server_2025

2 versions affected across 7 products

Deep dive

Activity timeline3 mentions / 3d
00111Mentions · 2026-08-11: 1Mentions · 2026-08-12: 1Mentions · 2026-09-09: 1Patch / Workaround · 2026-08-11: 1Patch / Workaround · 2026-08-12: 1Technical Details · 2026-08-11: 1Technical Details · 2026-09-09: 108-1108-1209-09
Signal classification2 categories
Patch
266.7%
Disclosure
133.3%
Referenced assets2 URLs
Classification over time
DateTotalLabels
2026-08-111
Patch1
2026-08-121
Patch1
2026-09-091
Disclosure1
Full discourse3 posts
  • kawn@kawn2020
    Disclosure

    #windowsupdate #microsoft つづき ・CVE-2026-62776 Windows DHCP Server の特権の昇格の脆弱性 ・CVE-2026-62787 Windows DNS Server Remote Code Execution Vulnerability ・CVE-2026-62803 Windows DHCP Server の特権の昇格の脆弱性 つづき…

    Post summary

    The post enumerates three Windows Server CVEs discovered in 2026, indicating privilege escalation for DHCP servers and remote code execution for DNS services, without providing any PoC, exploit, patch, or evidence of active exploitation.

    1000078
    87 followersView on X
  • VulniPulse@vulnipulse
    Patch

    ⚠️ HIGH CVE ALERT CVE-2026-62787 · Microsoft Windows Server 2012 (Server Core) · CVSS 7.5 Attackers could execute arbitrary code. Upgrade to a vendor-listed fixed release. 🔎 Full advisory: https://vulnipulse.com/advisories/microsoft-cve-2026-62787 #CyberSecurity #CVE #Microsoft #WindowsServer

    Post summary

    The advisory highlights a critical Windows Server 2012 vulnerability (CVE‑2026‑62787) that permits arbitrary code execution and urges users to upgrade to the vendor‑patched release.

    1000061
    7 followersView on X
  • Windows Forum@windowsforum
    Patch

    🛡️ CVE-2026-62787 hits Windows DNS Server roles—not every PC asking for directions. Admins should patch; everyone else can postpone the panic until the next reboot. https://windowsforum.com/security-alerts.84/cve-2026-62787-windows-dns-server-rce-patch-august-updates.442630/?utm_source=x&utm_medium=social&utm_campaign=news_node84 #PatchManagement #WindowsServerSecurity #WindowsDnsServer #Cve202662787 https://t.co/3PJmqcEtJF

    Post summary

    The post announces CVE‑2026‑62787 affecting Windows DNS Server roles and urges administrators to apply the vendor patch.

    0000058
    1.3K followersView on X
CPE platform detail10 entries

10 of 10 entries

PartVendorProductVersionTarget SWTarget HW
OSmicrosoftwindows_10_1607--x64
OSmicrosoftwindows_10_1607--x86
OSmicrosoftwindows_10_1809--x64
OSmicrosoftwindows_10_1809--x86
OSmicrosoftwindows_server_2012---
OSmicrosoftwindows_server_2012r2--
OSmicrosoftwindows_server_2016---
OSmicrosoftwindows_server_2019---
OSmicrosoftwindows_server_2022---
OSmicrosoftwindows_server_2025---

Explore more