Microsoft has released a security update to address a remote code execution (RCE) vulnerability—CVE-2020-1350—in Windows DNS Server. A remote attacker could exploit this vulnerability to take control of an affected system. This is considered a “wormable” vulnerability that affects all Windows Server versions.
Therefore, Bhutan Computer Incident Response Team recommends users and administrators to review Microsoft’s Security Advisory and Blog for more information, and apply the necessary update and workaround.