9.3

CVE-2017-0144

Warnung
Exploit
The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; and Windows 10 Gold, 1511, and 1607; and Windows Server 2016 allows remote attackers to execute arbitrary code via crafted packets, aka "Windows SMB Remote Code Execution Vulnerability." This vulnerability is different from those described in CVE-2017-0143, CVE-2017-0145, CVE-2017-0146, and CVE-2017-0148.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Server Message Block Version 1.0
   Microsoft ≫ Windows 10 1507 Version - HwPlatform x64
   Microsoft ≫ Windows 10 1507 Version - HwPlatform x86
   Microsoft ≫ Windows 10 1511 Version - HwPlatform x64
   Microsoft ≫ Windows 10 1511 Version - HwPlatform x86
   Microsoft ≫ Windows 10 1607 Version - HwPlatform x64
   Microsoft ≫ Windows 10 1607 Version - HwPlatform x86
   Microsoft ≫ Windows 7 Version - Update sp1
   Microsoft ≫ Windows 8.1 Version -
   Microsoft ≫ Windows Rt 8.1 Version -
   Microsoft ≫ Windows Server 2008 Version - Update sp2
   Microsoft ≫ Windows Server 2008 Version r2 Update sp1
   Microsoft ≫ Windows Server 2012 Version -
   Microsoft ≫ Windows Server 2012 Version r2
   Microsoft ≫ Windows Server 2016 Version -
   Microsoft ≫ Windows Vista Version - Update sp2
Siemens ≫ Acuson P300 Firmware Version 13.02
   Siemens ≫ Acuson P300 Version -
Siemens ≫ Acuson P300 Firmware Version 13.03
   Siemens ≫ Acuson P300 Version -
Siemens ≫ Acuson P300 Firmware Version 13.20
   Siemens ≫ Acuson P300 Version -
Siemens ≫ Acuson P300 Firmware Version 13.21
   Siemens ≫ Acuson P300 Version -
Siemens ≫ Acuson P500 Firmware Version va10
   Siemens ≫ Acuson P500 Version -
Siemens ≫ Acuson P500 Firmware Version vb10
   Siemens ≫ Acuson P500 Version -
Siemens ≫ Acuson Sc2000 Firmware Version >= 4.0 < 4.0e
   Siemens ≫ Acuson Sc2000 Version -
Siemens ≫ Acuson Sc2000 Firmware Version 5.0a
   Siemens ≫ Acuson Sc2000 Version -
Siemens ≫ Acuson X700 Firmware Version 1.0
   Siemens ≫ Acuson X700 Version -
Siemens ≫ Acuson X700 Firmware Version 1.1
   Siemens ≫ Acuson X700 Version -
Siemens ≫ Syngo Sc2000 Firmware Version >= 4.0 < 4.0e
   Siemens ≫ Syngo Sc2000 Version -
Siemens ≫ Syngo Sc2000 Firmware Version 5.0a
   Siemens ≫ Syngo Sc2000 Version -

10.02.2022: CISA Known Exploited Vulnerabilities (KEV) Catalog

Microsoft SMBv1 Remote Code Execution Vulnerability

Schwachstelle

The SMBv1 server in multiple Microsoft Windows versions allows remote attackers to execute arbitrary code via crafted packets.

Beschreibung

Apply updates per vendor instructions.

Erforderliche Maßnahmen
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 99.23% 0.999
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 8.8 2.8 5.9
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
NIST 9.3 8.6 10
AV:N/AC:M/Au:N/C:C/I:C/A:C
CISA-ADP 8.8 2.8 5.9
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://www.securitytracker.com/id/1037991
Third Party Advisory
Broken Link
VDB Entry
https://cert-portal.siemens.com/productcert/pdf/ssa-701903.pdf
Third Party Advisory
https://cert-portal.siemens.com/productcert/pdf/ssa-966341.pdf
Third Party Advisory
https://www.exploit-db.com/exploits/41891/
Third Party Advisory
Exploit
VDB Entry
https://www.exploit-db.com/exploits/41987/
Third Party Advisory
Exploit
VDB Entry
http://www.securityfocus.com/bid/96704
Third Party Advisory
Broken Link
VDB Entry
https://www.exploit-db.com/exploits/42030/
Third Party Advisory
Exploit
VDB Entry
https://www.exploit-db.com/exploits/42031/
Third Party Advisory
Exploit
VDB Entry
http://packetstormsecurity.com/files/154690/DOUBLEPULSAR-Payload-Execution-Neutralization.html
Third Party Advisory
Exploit
VDB Entry
http://packetstormsecurity.com/files/156196/SMB-DOUBLEPULSAR-Remote-Code-Execution.html
Third Party Advisory
Exploit
VDB Entry
https://ics-cert.us-cert.gov/advisories/ICSMA-18-058-02
Third Party Advisory
US Government Resource
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-0144
Patch
Vendor Advisory
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2017-0144
US Government Resource