CVE-2007-1173

3 documents3 sources
Severity
10.0CRITICAL
EPSS
23.2%
top 4.05%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 16
Latest updateMay 1

Description

Multiple buffer overflows in the CentennialIPTransferServer service (XFERWAN.EXE), as used by (1) Centennial Discovery 2006 Feature Pack 1, (2) Numara Asset Manager 8.0, and (3) Symantec Discovery 6.5, allow remote attackers to execute arbitrary code via long strings in a crafted TCP packet.

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 10.0 | Impact: 10.0

Affected Packages3 packages

NVDcentennial/discovery2006_featurepack1

🔴Vulnerability Details

2
GHSA
GHSA-r6xh-7cgr-qwg3: Multiple buffer overflows in the CentennialIPTransferServer service (XFERWAN2022-05-01
CVEList
CVE-2007-1173: Multiple buffer overflows in the CentennialIPTransferServer service (XFERWAN2007-05-16
CVE-2007-1173 (CRITICAL CVSS 10) | Multiple buffer overflows in the Ce | cvebase.io