7.5
CVE-2007-2136
- EPSS 4.34%
- Veröffentlicht 22.04.2007 19:19:00
- Zuletzt bearbeitet 16.06.2026 22:39:00
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Stack-based buffer overflow in bgs_sdservice.exe in BMC Patrol PerformAgent allows remote attackers to execute arbitrary code by connecting to TCP port 10128 and sending certain XDR data, which is not properly parsed.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 4.34% | 0.899 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://secunia.com/advisories/24937
http://securityreason.com/securityalert/2598
http://www.securityfocus.com/archive/1/466222/100/0/threaded
http://www.securityfocus.com/bid/23557
http://www.securitytracker.com/id?1017934
http://www.vupen.com/english/advisories/2007/1457
http://www.zerodayinitiative.com/advisories/ZDI-07-019.html
https://exchange.xforce.ibmcloud.com/vulnerabilities/33745