CVE-2026-49181 Details
Description
Integer underflow (wrap or wraparound) in Windows DHCP Client allows an unauthorized attacker to elevate privileges over a network.
A vulnerability allowing unauthorized attackers to elevate privileges has been identified in the Windows DHCP Client. This issue arises from an integer underflow, which can be exploited over the network. A successful exploitation could grant SYSTEM privileges to the attacker.
Users can download the security update for this vulnerability via the Microsoft Update Catalog. Security update KB5099535 is available for Windows Server 2016 and Windows 10 Version 1607 for both x64-based and 32-bit systems. For Windows Server 2025, the security update KB5099536 can be downloaded. Windows Server 2022 users can also download the security update KB5099540. For Windows Server 2019 and Windows 10 Version 1809, security update KB5099538 is available. Lastly, users of Windows Server 2012 R2 and Windows Server 2012 can download the monthly rollup security updates KB5099444 and KB5099445, respectively.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed Jul 16, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-49181 | [email protected] | PatchVendor Advisory |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-191 | Integer Underflow (Wrap or Wraparound) | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| microsoft windows 10 1607 | < 10.0.14393.9339 |
CPE
Remediation
| |
| microsoft windows 10 1809 | < 10.0.17763.9020 |
CPE
Remediation
| |
| microsoft windows server 2012 | r2 |
CPE
Remediation
| |
| microsoft windows server 2016 | < 10.0.14393.9339 |
CPE
Remediation
| |
| microsoft windows server 2019 | < 10.0.17763.9020 |
CPE
Remediation
| |
| microsoft windows server 2022 | < 10.0.20348.5386 |
CPE
Remediation
| |
| microsoft windows server 2025 | < 10.0.26100.33158 |
CPE
Remediation
| |
Change History
5 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jul 29, 2026 | CVE Modified | CISA-ADP |
| Jul 20, 2026 | Initial Analysis | [email protected] |
| Jul 16, 2026 | CVE Modified | CISA-ADP |
| Jul 14, 2026 | CVE Modified | CISA-ADP |
| Jul 14, 2026 | New CVE Received | [email protected] |