CVE-2017-0147CISA KEV
Microsoft Windows SMBv1 Information Disclosure Vulnerability
CISA lists this Microsoft vulnerability as known exploited. Its MSRC release detail is outside this installation's collected history.
CISA catalog record
The SMBv1 server in Microsoft Windows allows remote attackers to obtain sensitive information from process memory via a crafted packet.
- Product
- SMBv1 server
- Added to KEV
- 24 May 2022
- Federal remediation due
- 14 Jun 2022
- Known ransomware use
- Yes