An issue was discovered in Home DNS Server 0.10. Due to insufficient access restrictions in the default installation directory, an attacker can elevate privileges by replacing the HomeDNSServer.exe binary.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-26132
Reference (s):
- https://github.com/an0ry/advisories
- https://sourceforge.net/projects/dnsserver/