Vulnerability in Microsoft SMB Client Implementation
CVE-2010-0016

Currently unrated

Key Information:

Vendor

Microsoft

Vendor
CVE Published:
10 February 2010

What is CVE-2010-0016?

The SMB client implementation in various versions of Microsoft Windows—including Windows 2000 SP4, Windows XP SP2 and SP3, and Windows Server 2003 SP2—contains a flaw that fails to validate response fields correctly. This oversight enables remote SMB servers and man-in-the-middle attackers to execute arbitrary code through maliciously crafted responses, leading to potential security breaches within the affected systems.

References

EPSS Score

44% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.