Skip to main content

SMBv1 server vulnerabilities

2 published alerts for Microsoft SMBv1 server.

Actively exploited (KEV)Ransomware

CVE-2017-0147

Microsoft Windows SMBv1 Information Disclosure Vulnerability

Microsoft SMBv1 server is listed in CISA's Known Exploited Vulnerabilities catalog (CVE-2017-0147). The SMBv1 server in Microsoft Windows allows remote attackers to obtain sensitive information from process memory via a crafted packet. CISA remediation due date: 2022-06-14. If you need help checking exposure, call (864) 335-9223.

Actively exploited (KEV)Ransomware

CVE-2017-0148

Microsoft SMBv1 Server Remote Code Execution Vulnerability

Microsoft SMBv1 server is listed in CISA's Known Exploited Vulnerabilities catalog (CVE-2017-0148). The SMBv1 server in Microsoft allows remote attackers to execute arbitrary code via crafted packets. CISA remediation due date: 2022-04-27. If you need help checking exposure, call (864) 335-9223.