Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2008-4037


Microsoft Windows 2000 Gold through SP4, XP Gold through SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 allows remote SMB servers to execute arbitrary code on a client machine by replaying the NTLM credentials of a client user, as demonstrated by backrush, aka "SMB Credential Reflection Vulnerability." NOTE: some reliable sources report that this vulnerability exists because of an insufficient fix for CVE-2000-0834.


Published

2008-11-12T23:30:02.807

Last Modified

2025-04-09T00:30:58.490

Status

Deferred

Source

[email protected]

Severity

CVSSv2: 9.3 (HIGH)

CVSSv2 Vector

AV:N/AC:M/Au:N/C:C/I:C/A:C

  • Access Vector: NETWORK
  • Access Complexity: MEDIUM
  • Authentication: NONE
  • Confidentiality Impact: COMPLETE
  • Integrity Impact: COMPLETE
  • Availability Impact: COMPLETE
Exploitability Score

8.6

Impact Score

10.0

Weaknesses
  • Type: Primary
    CWE-287

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System microsoft windows server_2003 Yes
Operating System microsoft windows server_2003 Yes
Operating System microsoft windows server_2003 Yes
Operating System microsoft windows server_2003 Yes
Operating System microsoft windows server_2003 Yes
Operating System microsoft windows server_2003 Yes
Operating System microsoft windows xp Yes
Operating System microsoft windows xp Yes
Operating System microsoft windows xp Yes
Operating System microsoft windows xp Yes
Operating System microsoft windows_2000 - Yes
Operating System microsoft windows_server_2008 - Yes
Operating System microsoft windows_server_2008 - Yes
Operating System microsoft windows_server_2008 - Yes
Operating System microsoft windows_vista - Yes
Operating System microsoft windows_vista - Yes
Operating System microsoft windows_vista - Yes

References