CVE-2020-1284 — Improper Validation of Specified Quantity in Input in Microsoft Windows 10 Version 2004 FOR 32-bit Systems
Severity
6.5MEDIUMNVD
EPSS
16.0%
top 5.21%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJun 9
Latest updateMay 24
Description
A denial of service vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests, aka 'Windows SMBv3 Client/Server Denial of Service Vulnerability'.
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:HExploitability: 2.8 | Impact: 3.6