CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 10.0. It affects Microsoft, Windows. Its EPSS score suggests a 62.2% probability of exploitation in the next 30 days. It may be remotely exploitable.
CVE
CVE-2009-2532
Severity
HIGH
CVSS
10
EPSS
62.17%
Microsoft Windows
Original NVD Description
Microsoft Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold and SP2, and Windows 7 RC do not properly process the command value in an SMB Multi-Protocol Negotiate Request packet, which allows remote attackers to execute arbitrary code via a crafted SMBv2 packet to the Server service, aka "SMBv2 Command Value Vulnerability."