Windows SMBv3 Server Remote Code Execution Vulnerability
CVE-2024-43447

8.1HIGH

Key Information:

Vendor

Microsoft

Vendor
CVE Published:
12 November 2024

What is CVE-2024-43447?

A vulnerability exists in Windows SMBv3 Server that allows an attacker to execute arbitrary code on a targeted system. This security flaw can be exploited through specially crafted packets sent to the SMBv3 Server. Successful exploitation could enable attackers to install programs, view, change, or delete data, or create new accounts with full user rights. Organizations using affected versions are urged to apply updates to mitigate the associated risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Windows Server 2022 x64-based Systems 10.0.20348.0 < 10.0.20348.2849

References

CVSS V3.1

Score:
8.1
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

.