CVE-2007-3880
Last modified
CVE-2007-3880 is a vulnerability of currently unknown severity. Format string vulnerability in srsexec in Sun Remote Services (SRS) Net Connect 3.2.3 and 3.2.4, as distributed in the SRS Proxy Core (SUNWsrspx) package, allows local users to gain privileges via format string specifiers in unspecified input that is logged through syslog.. EPSS estimates a 0.33% chance of exploitation in the next 30 days.
Description
Format string vulnerability in srsexec in Sun Remote Services (SRS) Net Connect 3.2.3 and 3.2.4, as distributed in the SRS Proxy Core (SUNWsrspx) package, allows local users to gain privileges via format string specifiers in unspecified input that is logged through syslog.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Sun | Net Connect Software | 3.2.3 |
| Sun | Net Connect Software | 3.2.4 |
References
- http://secunia.com/advisories/27512Patch, Vendor Advisory
- http://secunia.com/advisories/27512Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2007-3880?
How severe is CVE-2007-3880?
How do I fix CVE-2007-3880?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2007
- CVE-2007-3871Stampit Web uses guessable id values for online stamp purcha…
- CVE-2007-3872Multiple stack-based buffer overflows in the Shared Trace Se…
- CVE-2007-3873Stack-based buffer overflow in vstlib32.dll 1.2.0.1012 in th…
- CVE-2007-3874Directory traversal vulnerability in the tftp/mftp daemon in…
- CVE-2007-3875arclib.dll before 7.3.0.9 in CA Anti-Virus (formerly eTrust …
- CVE-2007-3876Stack-based buffer overflow in SMB in Apple Mac OS X 10.4.11…
- CVE-2007-3881SQL injection vulnerability in index.php in Pictures Rating …
- CVE-2007-3882SQL injection vulnerability in index.php in Expert Advisor a…
- CVE-2007-3883The Data Dynamics ActiveBar ActiveX control (actbar3.ocx) 3.…
- CVE-2007-3884SQL injection vulnerability in philboard_forum.asp in husrev…
- CVE-2007-3885Cross-site scripting (XSS) vulnerability in philboard_search…
- CVE-2007-3886Cross-site scripting (XSS) vulnerability in default.asp in E…
Are you affected by CVE-2007-3880?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
