References https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1350 https://nvd.nist.gov/vuln/detail/CVE-2020-1350 https://support.microsoft.com/en-us/topic/kb4569509-guidance-for-dns-server-vulnerability-cve-2020-1350-6bdf3ae7-1961-2d25-7244-cce61b056569 https://research.checkpoint.com/2020/resolving-your-way-into-domain-admin-exploiting-a-17-year-old-bug-in-windows-dns-servers/ https://www.rapid7.com/blog/post/2020/07/14/windows-dns-server-remote-code-execution-vulnerability-cve-2020-1350-what-you-need-to-know/ https://support.microsoft.com/zh-cn/topic/kb4569509-dns-%E6%9C%8D%E5%8A%A1%E5%99%A8%E6%BC%8F%E6%B4%9E-cve-2020-1350-%E6%8C%87%E5%8D%97-6bdf3ae7-1961-2d25-7244-cce61b056569 https://www.anquanke.com/post/id/210812 https://en.wikipedia.org/wiki/SIGRed https://www.cisa.gov/news-events/directives/ed-20-03-mitigate-windows-dns-server-remote-code-execution-vulnerability-july-2020-patch-tuesday
Related VulnerabilitiesWindows截图工具NTLM信息泄露漏洞(CVE-2026-33829)Gradio /static//windows/win.ini 文件读取漏洞 (CVE-2026-28414)Windows Shell Link 敏感信息泄露与欺骗漏洞(CVE-2026-25185)PoCCVE-2025-13315: Twonky Server 8.5.2 on Linux and Windows - Log File ExposureWindows PolicyConfiguration 计划任务特权提升漏洞(CVE-2025-60710)Windows 11 PolicyConfiguration 计划任务特权提升漏洞(CVE-2025-60710)Windows 11 RAiLaunchAdminProcess 管理员保护特权提升漏洞(CVE-2025-62522)Vite开发服务器Windows环境下文件泄露漏洞(CVE-2025-41246) VMware Tools for Windows授权不当漏洞Windows NTLMv2-SSP Hash信息泄露漏洞(CVE-2025-50154)(CVE-2025-26513)SAN Host Utilities for Windows 8.0前版本安装程序本地权限提升漏洞(CVE-2025-8088) WinRAR Windows版本路径遍历漏洞可导致任意代码执行PoCCVE-2015-1635: Microsoft Windows 'HTTP.sys' - Remote Code Execution