← back
CVE-2023-32020mediumCWE-350

Windows DNS Spoofing Vulnerability

13Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 5.6epss 0.7%
exploitation probability
0.7%top 52% of all CVEs
observed exploitation
nono source reports it
In short

Windows DNS servers can be tricked into accepting fake DNS responses from attackers on the same network, causing users to be directed to malicious websites instead of legitimate ones. This is dangerous because users trust their DNS results without realizing they've been redirected.

Technical detail

A DNS cache poisoning vulnerability in Windows DNS implementations allows an attacker on the same network segment to inject spoofed DNS responses that bypass validation checks, potentially resulting in users being redirected to attacker-controlled sites. The attack requires network proximity and the victim DNS resolver to process the malicious response before the legitimate one.

Summary generated and translated by AI from the official description.
Windows DNS Spoofing Vulnerability
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L/E:U/RL:O/RC:C