CYBER CODE RED

Get real-time updates on Telegram

P3Verified

CVE-2013-3900: windows 10 1507 Version not applicable in the source CPE; +48 more affected products

CVE-2013-3900. CVSS 3.1 base score 8.8 (HIGH, NVD). EPSS 0.44647 (percentile 0.98736), scored 2026-10-06.

Affected technology

windows 10 1507 · Version not applicable in the source CPE
microsoft

windows 10 1607 · Version not applicable in the source CPE
microsoft

windows 10 1809 · Version not applicable in the source CPE
microsoft

windows 10 1909 · Version not applicable in the source CPE
microsoft

windows 10 20h2 · Version not applicable in the source CPE
microsoft

windows 10 21h1 · Version not applicable in the source CPE
microsoft

windows 10 21h2 · Version not applicable in the source CPE
microsoft

windows 10 22h2 · Version not applicable in the source CPE
microsoft

windows 11 21h2 · Version not applicable in the source CPE
microsoft

windows 11 22h2 · Version not applicable in the source CPE
microsoft

windows 11 23h2 · Version not applicable in the source CPE
microsoft

windows 11 24h2 · Version not applicable in the source CPE
microsoft

windows 7 · Version not applicable in the source CPE
microsoft

windows 8.1 · Version not applicable in the source CPE
microsoft

windows rt 8.1 · Version not applicable in the source CPE
microsoft

windows server 2008 · Version not applicable in the source CPE
microsoft

windows server 2008 · r2 · update sp1
microsoft

windows server 2012 · Version not applicable in the source CPE
microsoft

windows server 2012 · r2
microsoft

windows server 2016 · Version not applicable in the source CPE
microsoft

windows server 2019 · Version not applicable in the source CPE
microsoft

windows server 2022 · Version not applicable in the source CPE
microsoft

windows server 2022 23h2 · Version not applicable in the source CPE
microsoft

windows server 2025 · Version not applicable in the source CPE
microsoft

Windows 10 Version 1809 · N/A
Microsoft

Windows Server 2019 · N/A
Microsoft

Windows Server 2019 (Server Core installation) · N/A
Microsoft

Windows Server 2022 · N/A
Microsoft

Windows 11 version 21H2 · N/A
Microsoft

Windows 10 Version 21H2 · N/A
Microsoft

Windows 11 version 22H2 · N/A
Microsoft

Windows 10 Version 22H2 · N/A
Microsoft

Windows Server 2025 (Server Core installation) · N/A
Microsoft

Windows 11 version 22H3 · N/A
Microsoft

Windows 11 Version 23H2 · N/A
Microsoft

Windows Server 2022, 23H2 Edition (Server Core installation) · N/A
Microsoft

Windows 11 Version 24H2 · N/A
Microsoft

Windows Server 2025 · N/A
Microsoft

Windows 10 Version 1507 · N/A
Microsoft

Windows 10 Version 1607 · N/A
Microsoft

Windows Server 2016 · N/A
Microsoft

Windows Server 2016 (Server Core installation) · N/A
Microsoft

Windows Server 2008 Service Pack 2 · N/A
Microsoft

Windows Server 2008 Service Pack 2 (Server Core installation) · N/A
Microsoft

Windows Server 2008 Service Pack 2 · N/A
Microsoft

Windows Server 2008 R2 Service Pack 1 · N/A
Microsoft

Windows Server 2008 R2 Service Pack 1 (Server Core installation) · N/A
Microsoft

Windows Server 2012 · N/A
Microsoft

Windows Server 2012 (Server Core installation) · N/A
Microsoft

Windows Server 2012 R2 · N/A
Microsoft

Windows Server 2012 R2 (Server Core installation) · N/A
Microsoft

Component: Not specified by the source
Function: handles
File: in

Attack conditions (Vendor/CNA, CVSS 3.1): Local · No privileges required · User interaction required

Attack conditions (NVD, CVSS 3.1): Network (remote) · No privileges required · User interaction required

What an attacker can do

The source reports that an attacker could run code remotely under the conditions described by the source. Vendor/CNA’s CVSS 3.1 assessment (base score 5.5/10) rates confidentiality and availability impact as none; integrity impact as high. NVD’s CVSS 3.1 assessment (base score 8.8/10) rates confidentiality, integrity and availability impact as high.

Published

CWE
CWE-347
CCR priority
46.4 /100 (P3)
CVSS 3.1
8.8 /10 · CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H · NVD
EPSS
0.44647 · percentile 0.98736 · 2026-10-06
KEV
no

Provenance

Stable permalink: https://cybercodered.org/item/cve-cve-2013-3900.html