Back
CVE-2005-1206
Buffer overflow in the Server Message Block (SMB) functionality for Microsoft Windows 2000, XP SP1 and SP2, and Server 2003 and SP1 allows remote attackers to execute arbitrary code via unknown vectors, aka the "Server Message Block Vulnerability."
Published: Jun 14, 2005
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (5)
| Vendor | Product | Version |
|---|---|---|
| microsoft | windows_2000 | * |
| microsoft | windows_2003_server | r2 |
| microsoft | windows_2003_server | sp1 |
| microsoft | windows_xp | * |
| microsoft | windows_xp | * |
GitHub Security Advisory GHSA-qxqr-g4xv-chch
Buffer overflow in the Server Message Block (SMB) functionality for Microsoft Windows 2000, XP...
References (14)
- http://secunia.com/advisories/15694 Patch, Vendor Advisory
- http://www.kb.cert.org/vuls/id/489397 Patch, Third Party Advisory, US Government Resource
- http://www.us-cert.gov/cas/techalerts/TA05-165A.html Patch, Third Party Advisory, US Government Resource
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2005/ms05-027
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1142
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A259
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A467
- http://secunia.com/advisories/15694 Patch, Vendor Advisory
- http://www.kb.cert.org/vuls/id/489397 Patch, Third Party Advisory, US Government Resource
- http://www.us-cert.gov/cas/techalerts/TA05-165A.html Patch, Third Party Advisory, US Government Resource
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2005/ms05-027
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1142
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A259
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A467
Risk Scores
CVSS Score
7.5 / 10
EPSS Score
70.28%
Top 1% most likely to be exploited
Threat Score
61.1 / 100
Data Sources
NVD
EPSS
GitHub