CVE-2017-11780Corporation Server Message Block 1.0 vulnerability

5 documents5 sources
Severity
7.0HIGHNVD
OSV5.3
EPSS
10.4%
top 6.76%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 13
Latest updateMay 13

Description

The Server Message Block 1.0 (SMBv1) on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016, allows a remote code execution vulnerability when it fails to properly handle certain requests, aka "Windows SMB Remote Code Execution Vulnerability".

CVSS vector

CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:L/A:LExploitability: 2.2 | Impact: 4.7

Affected Packages16 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-2762-xq5x-qh8r: The Server Message Block 12022-05-13
OSV
spamassassin vulnerabilities2018-11-06

📋Vendor Advisories

1
Microsoft
Windows SMB Remote Code Execution Vulnerability2017-10-10

🕵️Threat Intelligence

1
Talos
Microsoft Patch Tuesday - October 20172017-10-10