CVE-2017-0145High· 8.8▾ Abyssal⚠ Exploited in the wild0dayPoC availableThe SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; and Windows 10 Gold, 1511, and 1607; and Windows Server 2016 allows remote …
▾ Abyssal zone — Critical with a public exploit or in-the-wild use
impact 48.4 · likelihood 18 · exploitation 25 · ransomware 5
A public proof-of-concept already exists for this vulnerability — see Exploit availability below.
Public exploit / PoC code seen in 3 sources. Availability, not in-the-wild use.
Exploit-prediction probability, daily snapshots since Aug 14.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Federal remediation due Aug 10, 2022
Last analysed / modified upstream
90%
Exploit-DB · 1 GitHub repo · Metasploit ×3 (last check)
Added to the CISA catalog on Feb 10, 2022. Federal remediation due Aug 10, 2022. View catalog ↗
The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; and Windows 10 Gold, 1511, and 1607; and Windows Server 2016 allows remote attackers to execute arbitrary code via crafted packets, aka "Windows SMB Remote Code Execution Vulnerability." This vulnerability is different from those described in CVE-2017-0143, CVE-2017-0144, CVE-2017-0146, and CVE-2017-0148.
server_message_block = 1.0acuson_p300_firmware = 13.02acuson_p300_firmware = 13.03acuson_p300_firmware = 13.20acuson_p300_firmware = 13.21acuson_p500_firmware = va10acuson_p500_firmware = vb10acuson_sc2000_firmware >= 4.0, < 4.0eacuson_sc2000_firmware = 5.0aacuson_x700_firmware = 1.0acuson_x700_firmware = 1.1syngo_sc2000_firmware >= 4.0, < 4.0esyngo_sc2000_firmware = 5.0atissue_preparation_system_firmwareversant_kpcr_molecular_system_firmwareversant_kpcr_sample_prep_firmwareUpgrade past the affected range:
acuson_sc2000_firmware 4.0esyngo_sc2000_firmware 4.0eConnected by shared product, vendor, weakness, or advisory.
CVE-2017-0144High· 8.8The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; and Windows 10 Gold, 1511, and 1607; and Windows Server 2016 allows remote …
CVE-2026-85880High· 7.8Heap-based buffer overflow in Windows ALPC allows an authorized attacker to elevate privileges locally.
CVE-2026-81963High· 7.8Improper link resolution before file access ('link following') in Windows Update Stack allows an authorized attacker to elevate privileges locally.
CVE-2026-83991Medium· 5.5Missing authentication for critical function in Windows Cloud Files Mini Filter Driver allows an authorized attacker to perform tampering locally.
CVE-2026-88097High· 8.1Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to elevate privileges locally.
CVE-2026-62874Critical· 10.0Insufficient verification of data authenticity in Azure Billing allows an unauthorized attacker to elevate privileges over a network.