Feed/CVE-2020-1350
CVE-2020-1350CISA KEV: Actively Exploited

Microsoft Windows DNS Server Remote Code Execution Vulnerability

Published Nov 3, 2021·Updated Nov 3, 2021

NVD Description

Microsoft Windows DNS Servers fail to properly handle requests, allowing an attacker to perform remote code execution in the context of the Local System Account. The vulnerability is also known under the moniker of SIGRed.

Public Exploits & PoCs16 found

PoC: CVE-2020-1350_HoneyPoC

HoneyPoC: Proof-of-Concept (PoC) script to exploit SIGRed (CVE-2020-1350). Achieves Domain Admin on Domain Controllers running Windows Server 2000 up to Windows Server 2019.

271

PoC: CVE-2020-1350-DoS

A denial-of-service proof-of-concept for CVE-2020-1350

231

PoC: NSE-scripts

NSE scripts to detect CVE-2020-1350 SIGRED and CVE-2020-0796 SMBGHOST, CVE-2021-21972, proxyshell, CVE-2021-34473

120

PoC: CVE-2020-1350

Denial of Service PoC for CVE-2020-1350 (SIGRed)

19

PoC: CVE-2020-1350

This Powershell Script is checking if your server is vulnerable for the CVE-2020-1350 Remote Code Execution flaw in the Windows DNS Service

15

PoC: SIGRed

Detection of attempts to exploit Microsoft Windows DNS server via CVE-2020-1350 (AKA SIGRed)

10

PoC: CVE-2020-1350

CVE-2020-1350 Proof-of-Concept

9

PoC: Fake_CVE-2020-1350

Fake exploit tool, designed to rickroll users attempting to actually exploit.

7

PoC: CVE-2020-1350

Scanner and Mitigator for CVE 2020-1350

3

PoC: CVE-2020-1350-Fix

A registry-based workaround can be used to help protect an affected Windows server, and it can be implemented without requiring an administrator to restart the server. Because of the volatility of this vulnerability, administrators may have to implement the workaround before they apply the security update in order to enable them to update their systems by using a standard deployment cadence.

2

PoC: cve-2020-1350

A powershell script to deploy the registry mitigation key for CVE-2020-1350

1

PoC: CVE-2020-1350-checker.ps1

Comprueba si su servidor DNS es vulnerable a la ejecución remota de código.

1

PoC: CVE-2020-1350

DNS Vulnerability - CVE-2020-1350

1

PoC: dRMM-CVE-2020-1350-response

Windows registry mitigation response to CVE-2020-1350

1

PoC: CVE-2020-1350-SigRed

CVE-2020-1350的PoC

PoC: CVE-2020-1350-checker.ps1

Comprueba si su servidor DNS es vulnerable a la ejecución remota de código.

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free