Back to search
CVE-2017-0147
Published: Mar 17, 2017
Modified: Oct 21, 2025
PUBLISHED
Description
The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; and Windows 10 Gold, 1511, and 1607; and Windows Server 2016 allows remote attackers to obtain sensitive information from process memory via a crafted packets, aka "Windows SMB Information Disclosure Vulnerability."
| Vendor | Product | Versions |
|---|---|---|
Microsoft Corporation | Windows SMB | affected The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; and Windows 10 Gold, 1511, and 1607; and Windows Server 2016 |
References
41891
exploit
x_refsource_EXPLOIT-DB
1037991
vdb-entry
x_refsource_SECTRACK
96709
vdb-entry
x_refsource_BID
https://cert-portal.siemens.com/productcert/pdf/ssa-701903.pdf
x_refsource_CONFIRM
https://ics-cert.us-cert.gov/advisories/ICSMA-18-058-02
x_refsource_MISC
41987
exploit
x_refsource_EXPLOIT-DB
https://cert-portal.siemens.com/productcert/pdf/ssa-966341.pdf
x_refsource_CONFIRM
43970
exploit
x_refsource_EXPLOIT-DB
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now