← back
CVE-2006-1315

CVE-2006-1315

35Vexday Risk Score

No sign of exploitation. It has a public proof of concept.

ssvc Attendepss 49%
from disclosure to weapon10 days
Published on NVDJul 11
1st PoC+10d
exploitation probability
49%top 1% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
The Server Service (SRV.SYS driver) in Microsoft Windows 2000 SP4, XP SP1 and SP2, Server 2003 up to SP1, and other products, allows remote attackers to obtain sensitive information via crafted requests that leak information in SMB buffers, which are not properly initialized, aka "SMB Information Disclosure Vulnerability."
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.