CVE-2010-0016
10.02.2010, 18:30
The SMB client implementation in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 does not properly validate response fields, which allows remote SMB servers and man-in-the-middle attackers to execute arbitrary code via a crafted response, aka "SMB Client Pool Corruption Vulnerability."Enginsight
Vendor | Product | Version |
---|---|---|
microsoft | windows_2000 | - |
microsoft | windows_server_2003 | * |
microsoft | windows_xp | * |
microsoft | windows_xp | * |
microsoft | windows_xp | - |
microsoft | windows_xp | - |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References