CVE-2010-0476

Microsoft Windows 7 - Resource Management Error

Title source: rule

Description

The SMB client in Microsoft Windows Server 2003 SP2, Vista Gold, SP1, and SP2, and Windows Server 2008 Gold and SP2 allows remote SMB servers and man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and reboot) via a crafted SMB transaction response that uses (1) SMBv1 or (2) SMBv2, aka "SMB Client Response Parsing Vulnerability."

Exploits (1)

exploitdb WORKING POC
pythondoswindows
https://www.exploit-db.com/exploits/12273

Scores

EPSS 0.4873
EPSS Percentile 97.8%

Details

CWE
CWE-399
Status published
Products (5)
microsoft/windows_2003_server (2 CPE variants)
microsoft/windows_7 (3 CPE variants)
microsoft/windows_server_2003
microsoft/windows_server_2008 (8 CPE variants)
microsoft/windows_vista (6 CPE variants)
Published Apr 14, 2010
Tracked Since Feb 18, 2026