PT-2017-1939 · Microsoft · Windows

Sleepya

·

Published

2017-03-14

·

Updated

2025-08-21

·

CVE-2017-0144

CVSS v2.0
9.3
VectorAV:N/AC:M/Au:N/C:C/I:C/A:C

Name of the Vulnerable Software and Affected Versions:

Microsoft Windows (affected versions not specified)

Description:

The issue exists due to insufficient input validation in the SMBv1 protocol of the Microsoft Windows operating system. It allows a remote attacker to execute arbitrary code using specially crafted packets.

Recommendations:

At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

RCE

Weakness Enumeration

Related Identifiers

BDU:2017-01099
CVE-2017-0144
MS17010CVE2017010

Affected Products

Windows