US DHS CISA urges government agencies to patch SIGRed Windows Server DNS vulnerability within 24h due to the likelihood of the issue being exploited. The issue received a severity rating of 10.0 on the CVSS scale and affects Windows Server versions 2003 to 2019. The vulnerability could be exploited by an unauthenticated, remote attacker to gain domain administrator privileges over targeted servers and take full control of an organizations IT infrastructure. No proof-of-concept code for the SigRed vulnerability is publicly available.”]
Source: https://securityaffairs.co/wordpress/106017/hacking/dhs-cisa-sigred.html

