CVE-2007-4490
Last modified
CVE-2007-4490 is a vulnerability of currently unknown severity. Multiple buffer overflows in EarthAgent.exe in Trend Micro ServerProtect 5.58 for Windows before Security Patch 4 allow remote attackers to have an unknown impact via certain RPC function calls to (1) RPCFN_EVENTBACK_DoHotFix or (2) CMD_CHANGE_AGENT_REGISTER_INFO.. EPSS estimates a 2.51% chance of exploitation in the next 30 days.
Description
Multiple buffer overflows in EarthAgent.exe in Trend Micro ServerProtect 5.58 for Windows before Security Patch 4 allow remote attackers to have an unknown impact via certain RPC function calls to (1) RPCFN_EVENTBACK_DoHotFix or (2) CMD_CHANGE_AGENT_REGISTER_INFO.
Metrics
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Trend Micro | Serverprotect | 5.58 | Build 1176 For Windows |
References
- http://secunia.com/advisories/26523Patch, Vendor Advisory
- http://secunia.com/advisories/26523Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2007-4490?
How severe is CVE-2007-4490?
How do I fix CVE-2007-4490?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2007
- CVE-2007-4484PHP remote file inclusion vulnerability in login.php in My_R…
- CVE-2007-4485PHP remote file inclusion vulnerability in visitor.php in Bu…
- CVE-2007-4486Multiple PHP remote file inclusion vulnerabilities in index.…
- CVE-2007-4487Cross-site scripting (XSS) vulnerability in D22-Shoutbox for…
- CVE-2007-4488Multiple cross-site scripting (XSS) vulnerabilities in the S…
- CVE-2007-4489Buffer overflow in the IUAComFormX ActiveX control in uacomx…
- CVE-2007-4491SQL injection vulnerability in uyeler2.php in Gurur haber 2.…
- CVE-2007-4492Multiple unspecified vulnerabilities in the ata disk driver …
- CVE-2007-4493eZ publish before 3.8.9, and 3.9 before 3.9.3, does not prop…
- CVE-2007-4494The tipafriend function in eZ publish before 3.8.9, and 3.9 …
- CVE-2007-4495Unspecified vulnerability in the ata disk driver in Sun Sola…
- CVE-2007-4496Unspecified vulnerability in EMC VMware Workstation before 5…
Are you affected by CVE-2007-4490?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
