Microsoft Windows Server 2012
cpe:2.3:o:microsoft:windows_server_2012:*:*:*:*:*:*:*
A heap-based buffer overflow vulnerability has been identified in Windows Message Queuing (MSMQ). This vulnerability allows an unauthorized attacker to execute code on a system over an adjacent network. The issue arises when MSMQ processes a specially crafted message, leading to memory corruption that can be exploited to run arbitrary code.
Exploitation of this vulnerability could lead to remote code execution on the affected system.
Users can apply the security update for this vulnerability, which is included in the May 2026 security updates. Instructions for downloading the security update can be found in the Microsoft Update Catalog.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.