Lucene search

K
mscveMicrosoftMS:CVE-2021-31205
HistoryMay 11, 2021 - 7:00 a.m.

Windows SMB Client Security Feature Bypass Vulnerability

2021-05-1107:00:00
Microsoft
msrc.microsoft.com
31
windows
smb client
security
feature bypass
vulnerability
microsoft

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

CVSS3

6.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

EPSS

0.005

Percentile

76.2%

Affected configurations

Vulners
Node
microsoftwindows_server_20h2Range<10.0.19042.982
OR
microsoftwindows_10_20h2Range<10.0.19042.982
OR
microsoftwindows_10_20h2Range<10.0.19042.982
OR
microsoftwindows_server_2004Range<10.0.19041.982
OR
microsoftwindows_10_1809Range<10.0.19041.982
OR
microsoftwindows_10_1809Range<10.0.19041.982
OR
microsoftwindows_10_1809Range<10.0.19041.982
VendorProductVersionCPE
microsoftwindows_server_20h2*cpe:2.3:o:microsoft:windows_server_20h2:*:*:*:*:*:*:*:*
microsoftwindows_10_20h2*cpe:2.3:o:microsoft:windows_10_20h2:*:*:*:*:*:*:*:*
microsoftwindows_server_2004*cpe:2.3:o:microsoft:windows_server_2004:*:*:*:*:*:*:*:*
microsoftwindows_10_1809*cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:*:*

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

CVSS3

6.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

EPSS

0.005

Percentile

76.2%