Bleepingcomputer Critical RCE Vulnerability in Windows IKE Actively Exploited
Article Content
- •CVE-2026-33824 allows unauthenticated remote code execution on Windows systems.
- •Exploitation can occur via crafted IKEv2 packets sent through UDP ports 500 or 4500.
- •CISA has classified this vulnerability as actively exploited, urging immediate remediation.
A critical remote code execution vulnerability in Microsoft Windows Internet Key Exchange (IKE), tracked as CVE-2026-33824, is being actively exploited. This double-free memory corruption issue affects all supported versions of Windows 10, Windows 11, and Windows Server. Attackers can exploit the vulnerability remotely without authentication by sending specially crafted IKEv2 packets through UDP ports 500 or 4500. The exploitation allows unauthorized code execution with SYSTEM privileges, posing significant risks to affected systems. CISA has added this vulnerability to its Known Exploited Vulnerabilities Catalog, urging immediate action from federal agencies and all network defenders. Microsoft had previously patched the vulnerability on April 14, 2026, but the assessment of its exploitability has changed. Security teams are advised to block inbound traffic on the affected ports if immediate patching is not possible. The situation is critical, with ongoing attacks reported.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (4)
Following this threat?
Track CVE-2026-33824 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Citrix NetScaler Critical Vulnerabilities Exploited: Urgent Patching Required Citrix NetScaler ADC and Gateway products are affected by critical vulnerabilities CVE-2026-88771 and CVE-2026-88772, both assigned a CVSS score of 9.5. The Cybersecurity and Infrastructure Security Agency (CISA) added these CVEs to its Known Exploited Vulnerabilities catalog on September 27, 2026, and mandated…
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited Citrix disclosed two critical zero-day vulnerabilities, CVE-2026-88771 and CVE-2026-88772, affecting NetScaler ADC and Gateway systems, which are being actively exploited. Both vulnerabilities have a CVSS score of 9.5 and allow unauthenticated attackers to execute arbitrary commands remotely. CVE-2026-88771 arises…