CVE-2017-0104
high · 8.1The iSNS Server service in Microsoft Windows Server 2008 SP2 and R2, Windows Server 2012 Gold and R2, and Windows Server 2016 allows remote attackers to issue malicious requests via an integer overflow, aka "iSNS Server Memory Corruption Vulnerability."
8.1
CVSS
13.8%
EPSS (exploit prob.)
96th
EPSS percentile
2017-03-17
Published
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Weaknesses
CWE-190
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| microsoft | windows_server_2008 | all versions |
| microsoft | windows_server_2008 | r2 |
| microsoft | windows_server_2012 | all versions |
| microsoft | windows_server_2012 | r2 |
| microsoft | windows_server_2016 | all versions |
Check a specific version with /api/v1/cve/match.
References
- http://www.securityfocus.com/bid/96697
- http://www.securitytracker.com/id/1038001
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-0104
- http://www.securityfocus.com/bid/96697
- http://www.securitytracker.com/id/1038001
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-0104
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2017-0104