AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2006-3880

MEDIUM · CVSS 5 EPSS 24.74%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2006-07-27 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 5.0. It affects Microsoft, Windows. Its EPSS score suggests a 24.7% probability of exploitation in the next 30 days. It may be remotely exploitable. It may lead to a denial-of-service condition.

CVE
CVE-2006-3880
Severity
MEDIUM
CVSS
5
EPSS
24.74%
Microsoft Windows

Original NVD Description

Microsoft Windows NT 4.0, Windows 2000, Windows XP, and Windows Small Business Server 2003 allow remote attackers to cause a denial of service (IP stack hang) via a continuous stream of packets on TCP port 135 that have incorrect TCP header checksums and random numbers in certain TCP header fields, as demonstrated by the Achilles Windows Attack Tool. NOTE: the researcher reports that the Microsoft Security Response Center has stated "Our investigation which has included code review, review of the TCPDump, and attempts on reproing the issue on multiple fresh installs of various Windows Operating Systems have all resulted in non confirmation.