CVE-2017-0144
The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2;...
Basic Information
- CVE State
- PUBLISHED
- Reserved Date
- September 09, 2016
- Published Date
- March 17, 2017
- Last Updated
- February 10, 2025
- Vendor
- Microsoft Corporation
- Product
- Windows SMB
- Description
- The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; and Windows 10 Gold, 1511, and 1607; and Windows Server 2016 allows remote attackers to execute arbitrary code via crafted packets, aka "Windows SMB Remote Code Execution Vulnerability." This vulnerability is different from those described in CVE-2017-0143, CVE-2017-0145, CVE-2017-0146, and CVE-2017-0148.
CVSS Scores
CVSS v3.1
8.8 - HIGH
Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
SSVC Information
- Exploitation
- active
- Technical Impact
- total
References
https://www.exploit-db.com/exploits/42031/
https://www.exploit-db.com/exploits/42030/
https://www.exploit-db.com/exploits/41891/
http://www.securitytracker.com/id/1037991
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-0144
https://cert-portal.siemens.com/productcert/pdf/ssa-701903.pdf
https://ics-cert.us-cert.gov/advisories/ICSMA-18-058-02
https://www.exploit-db.com/exploits/41987/
http://www.securityfocus.com/bid/96704
https://cert-portal.siemens.com/productcert/pdf/ssa-966341.pdf
http://packetstormsecurity.com/files/154690/DOUBLEPULSAR-Payload-Execution-Neutralization.html
http://packetstormsecurity.com/files/156196/SMB-DOUBLEPULSAR-Remote-Code-Execution.html
Known Exploited Vulnerability Information
Source | Added Date |
---|---|
CISA | 2022-02-10 00:00:00 UTC |
Scanner Integrations
Scanner | URL | Date Detected |
---|---|---|
Metasploit | https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/smb/smb_doublepulsar_rce.rb | 2025-04-29 11:01:44 UTC |
Potential Proof of Concepts
Warning: These PoCs have not been tested and could contain malware. Use at your own risk.
ducanh2oo3/Vulnerability-Research-CVE-2017-0144
Type: github • Created: 2024-04-03 07:39:43 UTC • Stars: 0
LAB: TẤN CÔNG HỆ ĐIỀU HÀNH WINDOWS DỰA VÀO LỖ HỔNG GIAO THỨC SMB.
quynhold/Detect-CVE-2017-0144-attack
Type: github • Created: 2022-12-16 11:10:13 UTC • Stars: 0
Chương trình theo dõi, giám sát lưu lượng mạng được viết bằng Python, nó sẽ đưa ra cảnh báo khi phát hiện tấn công CVE-2017-0144
EEsshq/CVE-2017-0144---EtneralBlue-MS17-010-Remote-Code-Execution
Type: github • Created: 2021-03-22 09:33:51 UTC • Stars: 14