Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q4w6-wqgp-2r7m

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

The Negotiate Security Software Provider (SSP) interface in Windows 2000, Windows XP, and Windows Server 2003, allows remote attackers to cause a denial of service (crash from null dereference) or execute arbitrary code via a crafted SPNEGO NegTokenInit request during authentication protocol selection.

The Negotiate Security Software Provider (SSP) interface in Windows 2000, Windows XP, and Windows Server 2003, allows remote attackers to cause a denial of service (crash from null dereference) or execute arbitrary code via a crafted SPNEGO NegTokenInit request during authentication protocol selection.

EPSS

Процентиль: 96%
0.23155
Средний

7.5 High

CVSS3

Дефекты

CWE-476

Связанные уязвимости

CVSS3: 7.5
nvd
больше 21 года назад

The Negotiate Security Software Provider (SSP) interface in Windows 2000, Windows XP, and Windows Server 2003, allows remote attackers to cause a denial of service (crash from null dereference) or execute arbitrary code via a crafted SPNEGO NegTokenInit request during authentication protocol selection.

EPSS

Процентиль: 96%
0.23155
Средний

7.5 High

CVSS3

Дефекты

CWE-476