mRr3b00t

mRr3b00t

@uk_daniel_card · Twitter ·

Great spot! CVE-2026-69730 is a Windows Server DNS Server RCE! apparently can be exploited by default! you would need line of sight to a windows DNS server or... get a user to visit a webpage and get the client to send a DNS request... (maybe) so you can see how this might

Darren Reevell

Microsoft has dropped CVE-2026-69730: a Windows DNS Server RCE with a 9.8 CVSS score. No authentication. No user interaction. Low complexity. No mitigation. No workaround. Basically, it doesn’t knock on the door; it lets itself in, makes a brew and starts executing code. Patch