VYPR

Windows SMB

by Microsoft

CVEs (16)

  • CVE-2025-33073HigKEVJun 10, 2025
    risk 0.77cvss 8.8epss 0.80

    Improper access control in Windows SMB allows an authorized attacker to elevate privileges over a network.

  • CVE-2022-24500HigApr 15, 2022
    risk 0.60cvss 8.8epss 0.37

    Windows SMB Remote Code Execution Vulnerability

  • CVE-2024-43642HigNov 12, 2024
    risk 0.54cvss 7.5epss 0.62

    Windows SMB Denial of Service Vulnerability

  • CVE-2020-17140HigDec 10, 2020
    risk 0.54cvss 8.1epss 0.12

    Windows SMB Information Disclosure Vulnerability

  • CVE-2025-32718HigJun 10, 2025
    risk 0.51cvss 7.8epss 0.00

    Integer overflow or wraparound in Windows SMB allows an authorized attacker to elevate privileges locally.

  • CVE-2024-26245HigApr 9, 2024
    risk 0.51cvss 7.8epss 0.01

    Windows SMB Elevation of Privilege Vulnerability

  • CVE-2025-50169HigAug 12, 2025
    risk 0.49cvss 7.5epss 0.01

    Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB allows an unauthorized attacker to execute code over a network.

  • CVE-2021-28324HigApr 13, 2021
    risk 0.49cvss 7.5epss 0.06

    Windows SMB Information Disclosure Vulnerability

  • CVE-2018-8335HigSep 13, 2018
    risk 0.49cvss 7.5epss 0.09

    A denial of service vulnerability exists in the Microsoft Server Block Message (SMB) when an attacker sends specially crafted requests to the server, aka "Windows SMB Denial of Service Vulnerability." This affects Windows Server 2012 R2, Windows RT 8.1, Windows Server 2012,…

  • CVE-2021-28325MedApr 13, 2021
    risk 0.47cvss 6.5epss 0.62

    Windows SMB Information Disclosure Vulnerability

  • CVE-2025-48802MedJul 8, 2025
    risk 0.42cvss 6.5epss 0.01

    Improper certificate validation in Windows SMB allows an authorized attacker to perform spoofing over a network.

  • CVE-2021-33783MedJul 14, 2021
    risk 0.42cvss 6.5epss 0.03

    Windows SMB Information Disclosure Vulnerability

  • CVE-2025-29956MedMay 13, 2025
    risk 0.35cvss 5.4epss 0.01

    Buffer over-read in Windows SMB allows an authorized attacker to disclose information over a network.

  • CVE-2026-58531HigJul 14, 2026
    risk 0.00cvss 7.5epss 0.01

    Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB allows an authorized attacker to elevate privileges over a network.

  • CVE-2026-54997MedJul 14, 2026
    risk 0.00cvss 5.5epss 0.00

    Use of uninitialized resource in Windows SMB allows an authorized attacker to disclose information locally.

  • CVE-2026-49801MedJul 14, 2026
    risk 0.00cvss 5.5epss 0.00

    Use of uninitialized resource in Windows SMB allows an authorized attacker to disclose information locally.