语言:
https://www.zerodayinitiative.com/advisories/ZDI-14-030/
https://www.zerodayinitiative.com/advisories/ZDI-14-031/
https://www.zerodayinitiative.com/advisories/ZDI-14-032/
https://www.zerodayinitiative.com/advisories/ZDI-14-033/
https://www.zerodayinitiative.com/advisories/ZDI-14-034/
https://www.zerodayinitiative.com/advisories/ZDI-14-035/
https://www.zerodayinitiative.com/advisories/ZDI-14-036/
https://docs.microsoft.com/en-us/security-updates/SecurityBulletins/2014/ms14-012
严重性: High
ID: 72930
文件名: smb_nt_ms14-012.nasl
版本: 1.22
类型: local
代理: windows
发布时间: 2014/3/11
最近更新时间: 2022/5/5
支持的传感器: Nessus
风险因素: Critical
分数: 9.7
风险因素: High
基本分数: 9.3
时间分数: 8.1
矢量: CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C
CVSS 分数来源: CVE-2014-0324
风险因素: High
基本分数: 7.5
时间分数: 7.2
矢量: CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
时间矢量: CVSS:3.0/E:H/RL:O/RC:C
CVSS 分数来源: CVE-2014-4112
CPE: cpe:/o:microsoft:windows, cpe:/a:microsoft:ie
必需的 KB 项: SMB/MS_Bulletin_Checks/Possible
可利用: true
易利用性: Exploits are available
补丁发布日期: 2014/3/11
漏洞发布日期: 2014/2/14
CISA 已知可遭利用的漏洞到期日期: 2022/5/25
CANVAS (CANVAS)
Core Impact
Metasploit (MS14-012 Microsoft Internet Explorer CMarkup Use-After-Free)
CVE: CVE-2014-0297, CVE-2014-0298, CVE-2014-0299, CVE-2014-0302, CVE-2014-0303, CVE-2014-0304, CVE-2014-0305, CVE-2014-0306, CVE-2014-0307, CVE-2014-0308, CVE-2014-0309, CVE-2014-0311, CVE-2014-0312, CVE-2014-0313, CVE-2014-0314, CVE-2014-0321, CVE-2014-0322, CVE-2014-0324, CVE-2014-4112
BID: 65551, 66023, 66025, 66026, 66027, 66028, 66029, 66030, 66031, 66032, 66033, 66034, 66035, 66036, 66037, 66038, 66039, 66040, 70266