7.5
CVE-2006-2371
- EPSS 22.6%
- Veröffentlicht 13.06.2006 19:06:00
- Zuletzt bearbeitet 16.06.2026 22:24:52
- Erkennungen
Buffer overflow in the Remote Access Connection Manager service (RASMAN) service in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 and earlier allows remote unauthenticated or authenticated attackers to execute arbitrary code via certain crafted "RPC related requests," that lead to registry corruption and stack corruption, aka the "RASMAN Registry Corruption Vulnerability."
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Windows 2000 Update sp1
Microsoft ≫ Windows 2000 Update sp2
Microsoft ≫ Windows 2000 Update sp3
Microsoft ≫ Windows 2000 Update sp4
Microsoft ≫ Windows 2003 Server Version datacenter_edition
Microsoft ≫ Windows 2003 Server Version datacenter_edition Update sp1
Microsoft ≫ Windows 2003 Server Version datacenter_edition_64-bit
Microsoft ≫ Windows 2003 Server Version datacenter_edition_64-bit Update sp1
Microsoft ≫ Windows 2003 Server Version enterprise_64-bit
Microsoft ≫ Windows 2003 Server Version enterprise_edition Update sp1
Microsoft ≫ Windows 2003 Server Version enterprise_edition_64-bit
Microsoft ≫ Windows 2003 Server Version enterprise_edition_64-bit Update sp1
Microsoft ≫ Windows 2003 Server Version r2 Edition datacenter_64-bit
Microsoft ≫ Windows 2003 Server Version sp1 Edition enterprise
Microsoft ≫ Windows 2003 Server Version standard
Microsoft ≫ Windows 2003 Server Version standard Update sp1
Microsoft ≫ Windows 2003 Server Version standard_64-bit
Microsoft ≫ Windows 2003 Server Version web
Microsoft ≫ Windows 2003 Server Version web Update sp1
Microsoft ≫ Windows Xp Edition 64-bit
Microsoft ≫ Windows Xp Edition home
Microsoft ≫ Windows Xp Edition media_center
Microsoft ≫ Windows Xp Update gold Edition professional
Microsoft ≫ Windows Xp Update sp1 Edition home
Microsoft ≫ Windows Xp Update sp1 Edition media_center
Microsoft ≫ Windows Xp Update sp2 Edition home
Microsoft ≫ Windows Xp Update sp2 Edition media_center
Microsoft ≫ Windows Xp Update sp2 Edition tablet_pc
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 22.6% | 0.975 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://www.us-cert.gov/cas/techalerts/TA06-164A.html
http://secunia.com/advisories/20630
http://securitytracker.com/id?1016285
http://www.vupen.com/english/advisories/2006/2323
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2006/ms06-025
http://securityreason.com/securityalert/1096
http://www.kb.cert.org/vuls/id/814644
http://www.osvdb.org/26436
http://www.securityfocus.com/archive/1/436977/100/0/threaded
http://www.securityfocus.com/bid/18358
https://exchange.xforce.ibmcloud.com/vulnerabilities/26814
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1674
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1846
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1851
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1857
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1907
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1983