CVE-2000-1079
Interactions between the CIFS Browser Protocol and NetBIOS as implemented in Microsoft Windows 95, 98, NT, and 2000 allow remote attackers to modify dynamic NetBIOS name cache entries via a spoofed Browse Frame Request in a unicast or UDP broadcast…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 15.9%, higher than 97% of all known CVEs. Patch or mitigate before the next change window.
Description
Interactions between the CIFS Browser Protocol and NetBIOS as implemented in Microsoft Windows 95, 98, NT, and 2000 allow remote attackers to modify dynamic NetBIOS name cache entries via a spoofed Browse Frame Request in a unicast or UDP broadcast datagram.
- CVSS 2.0
- 7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
- EPSS
- 15.87% probability · 97th percentile
- CISA KEV
- Not listed
- Affected
- microsoft/windows 2000 · microsoft/windows 95 · microsoft/windows 98 · microsoft/windows nt
- Source
- cve@mitre.org
References
- http://archives.neohapsis.com/archives/ntbugtraq/2000-q3/0116.html
- http://www.nai.com/research/covert/advisories/045.asp
- http://www.securityfocus.com/bid/1620Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5168
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1079
- http://archives.neohapsis.com/archives/ntbugtraq/2000-q3/0116.html
- http://www.nai.com/research/covert/advisories/045.asp
- http://www.securityfocus.com/bid/1620Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5168
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1079
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.