CVE-2015-0008 is a critical remote code execution vulnerability affecting multiple versions of Microsoft Windows and Windows Server, including Windows 7, 8, 8.1, Vista, and Server 2003, 2008, and 2012. It stems from a flaw in the UNC implementation where the client does not authenticate the server, allowing attackers to execute arbitrary code by providing crafted data on a UNC share, such as spoofed Group Policy data. With a CVSS score of 8.3 and a FAUCET Risk Score of 94/100, this vulnerability is highly severe, requiring only network access and low attack complexity for a complete compromise of confidentiality, integrity, and availability. While not listed in CISA's KEV catalog, public exploit code exists on ExploitDB, and it has garnered significant community discussion and media coverage, indicating its potential for exploitation.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_7:-:sp1:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_8:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_8.1:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_rt:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_rt_8.1:-:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:A/AC:L/Au:N/C:C/I:C/A:C
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.2 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.