9.3

CVE-2007-2218

Unspecified vulnerability in the Windows Schannel Security Package for Microsoft Windows 2000 SP4, XP SP2, and Server 2003 SP1 and SP2, allows remote servers to execute arbitrary code or cause a denial of service via crafted digital signatures that are processed during an SSL handshake.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Windows 2000 Update sp4
Microsoft ≫ Windows 2003 Server Version sp1
Microsoft ≫ Windows 2003 Server Version sp2
Microsoft ≫ Windows Xp Update sp2
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 12.54% 0.957
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 9.3 8.6 10
AV:N/AC:M/Au:N/C:C/I:C/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://www.securityfocus.com/archive/1/471947/100/0/threaded
http://www.us-cert.gov/cas/techalerts/TA07-163A.html
US Government Resource
http://secunia.com/advisories/25620
http://www.kb.cert.org/vuls/id/810073
US Government Resource
http://www.securityfocus.com/bid/24416
http://www.securitytracker.com/id?1018226
http://www.vupen.com/english/advisories/2007/2151
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2007/ms07-031
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1895