9.3

CVE-2008-4037

Exploit

Microsoft Windows 2000 Gold through SP4, XP Gold through SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 allows remote SMB servers to execute arbitrary code on a client machine by replaying the NTLM credentials of a client user, as demonstrated by backrush, aka "SMB Credential Reflection Vulnerability."  NOTE: some reliable sources report that this vulnerability exists because of an insufficient fix for CVE-2000-0834.

Data is provided by the National Vulnerability Database (NVD)
MicrosoftWindows Versionserver_2003 Updatesp1
MicrosoftWindows Versionserver_2003 Updatesp1 Editionitanium
MicrosoftWindows Versionserver_2003 Updatesp2
MicrosoftWindows Versionserver_2003 Updatesp2 Editionitanium
MicrosoftWindows Versionserver_2003 Updatesp2 Editionx64
MicrosoftWindows Versionserver_2003 Updateunknown Editionx64
MicrosoftWindows Versionxp Updatesp2
MicrosoftWindows Versionxp Updatesp2 Editionx64
MicrosoftWindows Versionxp Updatesp3
MicrosoftWindows Versionxp Updateunknown Editionx64
MicrosoftWindows 2000 Version- Updatesp4
MicrosoftWindows Server 2008 Version- Editionitanium
MicrosoftWindows Server 2008 Version- Editionx32
MicrosoftWindows Server 2008 Version- Editionx64
MicrosoftWindows Vista Version-
MicrosoftWindows Vista Version- Editionx64
MicrosoftWindows Vista Version- Updatesp1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 73.93% 0.988
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 9.3 8.6 10
AV:N/AC:M/Au:N/C:C/I:C/A:C
CWE-287 Improper Authentication

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.