CVE-2016-0917
9.8
CRITICAL · CVSS 3.0 · EPSS 4.2% (pctl 91)
In your normal cycle
Critical by CVSS (9.8), but no sign of active exploitation.
Description
The SMB service in EMC VNXe (VNXe3200 Operating Environment prior to 3.1.5.8711957 and VNXe3100/3150/3300 Operating Environment prior to 2.4.4.22638), VNX1 File OE before 7.1.80.3, VNX2 File OE before 8.1.9.155, and Celerra (all supported versions) does not prevent duplicate NTLM challenge-response nonces, which makes it easier for remote attackers to execute arbitrary code, or read or write to files, via a series of authentication requests, a related issue to CVE-2010-0231.
Scoring
| CVSS | 9.8 (CRITICAL, v3.0) |
|---|---|
| Vector | CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 4.18% — more likely to be exploited than 91% of all CVEs |
| Weakness | CWE-264 |
| On CISA KEV | no |
| Public exploit | none known |
| Published | 2016-09-21 |
| Last modified | 2026-06-17 |
Affected (13)
| Vendor | Product |
|---|---|
| emc | vnx1 oe firmware |
| emc | vnx2 oe firmware |
| emc | vnx5200 |
| emc | vnx5400 |
| emc | vnx5600 |
| emc | vnx5800 |
| emc | vnxe oe firmware |
| emc | vnxe1600 |
| emc | vnxe3100 |
| emc | vnxe3150 |
| emc | vnxe3200 |
| emc | vnxe3200 hybrid |
| emc | vnxe3300 |
References
- http://seclists.org/bugtraq/2016/Sep/32
- http://www.securityfocus.com/archive/1/539993/30/0/threaded
- http://www.securityfocus.com/bid/93023
- http://www.securitytracker.com/id/1036843
- http://seclists.org/bugtraq/2016/Sep/32
- http://www.securityfocus.com/archive/1/539993/30/0/threaded
- http://www.securityfocus.com/bid/93023
- http://www.securitytracker.com/id/1036843
→ the Explorer · watch your stack · NVD