Vulnerability · NVD
CVE-2026-41089
CRITICAL 9.8
Windows Netlogon Remote Code Execution Vulnerability
EPSS
0.10%
exploit very unlikely
percentile 26.4%
OS versions that fix this CVE
This CVE is resolved by the following OS security releases. Update the OS to at least the listed version.
- Windows Fixed in Windows Server 2025 (Server Core installation) 10.0.26100.32860 Windows Server 2025 10.0.26100.32860 Windows Server 2022 (Server Core installation) 10.0.20348.5139 Windows Server 2022 10.0.25398.2330 Windows Server 2019 (Server Core installation) 10.0.17763.8755 Windows Server 2019 10.0.17763.8755 Windows Server 2016 (Server Core installation) 10.0.14393.9140 Windows Server 2016 10.0.14393.9140