CVE-2008-4037 is a critical vulnerability affecting multiple versions of Microsoft Windows, including 2000, XP, Server 2003, Vista, and Server 2008. It allows remote SMB servers to execute arbitrary code on a client by replaying the client's NTLM credentials, a technique known as "SMB Credential Reflection." This vulnerability carries a CVSS score of 9.3, indicating a severe risk due to its network-based attack vector, medium attack complexity, and complete compromise of confidentiality, integrity, and availability. While not listed on the KEV catalog, exploit modules are available in Metasploit and ExploitDB, demonstrating its exploitability, though there is no significant community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
server_2003CPE matchmatch criteria | cpe:2.3:o:microsoft:windows:server_2003:sp1:*:*:*:*:*:* | ||
server_2003CPE matchmatch criteria | cpe:2.3:o:microsoft:windows:server_2003:sp1:itanium:*:*:*:*:* | ||
server_2003CPE matchmatch criteria | cpe:2.3:o:microsoft:windows:server_2003:sp2:*:*:*:*:*:* | ||
server_2003CPE matchmatch criteria | cpe:2.3:o:microsoft:windows:server_2003:sp2:itanium:*:*:*:*:* | ||
server_2003CPE matchmatch criteria | cpe:2.3:o:microsoft:windows:server_2003:sp2:x64:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:M/Au:N/C:C/I:C/A:C
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.