7.5
CVE-2006-2370
- EPSS 70.14%
- Veröffentlicht 13.06.2006 19:06:00
- Zuletzt bearbeitet 16.06.2026 22:24:52
- Erkennungen
Buffer overflow in the Routing and Remote Access service (RRAS) in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 and earlier allows remote unauthenticated or authenticated attackers to execute arbitrary code via certain crafted "RPC related requests," aka the "RRAS Memory Corruption Vulnerability."
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Windows 2000 Update sp1
Microsoft ≫ Windows 2000 Update sp2
Microsoft ≫ Windows 2000 Update sp3
Microsoft ≫ Windows 2000 Update sp4
Microsoft ≫ Windows 2003 Server Version datacenter_edition
Microsoft ≫ Windows 2003 Server Version datacenter_edition Update sp1
Microsoft ≫ Windows 2003 Server Version datacenter_edition_64-bit
Microsoft ≫ Windows 2003 Server Version datacenter_edition_64-bit Update sp1
Microsoft ≫ Windows 2003 Server Version enterprise_64-bit
Microsoft ≫ Windows 2003 Server Version enterprise_edition Update sp1
Microsoft ≫ Windows 2003 Server Version enterprise_edition_64-bit
Microsoft ≫ Windows 2003 Server Version enterprise_edition_64-bit Update sp1
Microsoft ≫ Windows 2003 Server Version r2 Edition datacenter_64-bit
Microsoft ≫ Windows 2003 Server Version sp1 Edition enterprise
Microsoft ≫ Windows 2003 Server Version standard
Microsoft ≫ Windows 2003 Server Version standard Update sp1
Microsoft ≫ Windows 2003 Server Version standard_64-bit
Microsoft ≫ Windows 2003 Server Version web
Microsoft ≫ Windows 2003 Server Version web Update sp1
Microsoft ≫ Windows Xp Edition 64-bit
Microsoft ≫ Windows Xp Edition home
Microsoft ≫ Windows Xp Edition media_center
Microsoft ≫ Windows Xp Update gold Edition professional
Microsoft ≫ Windows Xp Update sp1 Edition home
Microsoft ≫ Windows Xp Update sp1 Edition media_center
Microsoft ≫ Windows Xp Update sp2 Edition home
Microsoft ≫ Windows Xp Update sp2 Edition media_center
Microsoft ≫ Windows Xp Update sp2 Edition tablet_pc
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 70.14% | 0.993 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://www.us-cert.gov/cas/techalerts/TA06-164A.html
http://secunia.com/advisories/20630
http://securitytracker.com/id?1016285
http://www.kb.cert.org/vuls/id/631516
http://www.osvdb.org/26437
http://www.securityfocus.com/bid/18325
http://www.vupen.com/english/advisories/2006/2323
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2006/ms06-025
https://exchange.xforce.ibmcloud.com/vulnerabilities/26812
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1587
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1720
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1741
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1823
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1936
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A2061