V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
CVE-2010-0476
CVE
CriticalConfirmedExploit available

The SMB client in Microsoft Windows Server 2003 SP2, Vista Gold, SP1, and SP2, and Windows Server 2008 Gold and SP2 allows remote SMB serve…

CVSS
10.0
Critical
EPSS
0.34
p98
Published
2010-01-01
Updated
2010-01-01
Description

The SMB client in Microsoft Windows Server 2003 SP2, Vista Gold, SP1, and SP2, and Windows Server 2008 Gold and SP2 allows remote SMB servers and man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and reboot) via a crafted SMB transaction response that uses (1) SMBv1 or (2) SMBv2, aka "SMB Client Response Parsing Vulnerability."

Tags · CWE
CWE-399
Affected products
Windows_2003_serverWindows_server_2003
CVSS vector
AV:N/AC:L/Au:N/C:C/I:C/A:C
Timeline
2010-01-01
Published
2010-01-01
Updated
CVSS 3.1 breakdown
Attack Vector
AV: N
Network (N)
Attack Complexity
AC: L
Low (L)
Authentication
Au: N
None (N)
Confidentiality Impact
C: C
Complete
Integrity Impact
I: C
Complete
Availability Impact
A: C
Complete
Exploit indicators
EPSS
0.343 · p98
Known exploited (KEV)
No
Known exploits — Сканер-ВС
12273
exploitdb · https://www.exploit-db.com/exploits/12273
Enterprise
Affected products
ProductVendorStatus
windows_2003_server*Tracked
windows_7*Tracked
windows_server_2003*Tracked
windows_server_2008*Tracked
windows_server_2008*Tracked
windows_vista*Tracked
Source databases
CVE