7.5
CVE-2007-3711
- EPSS 2.06%
- Veröffentlicht 11.07.2007 23:30:00
- Zuletzt bearbeitet 16.06.2026 22:42:34
- Erkennungen
Unspecified vulnerability in TOS 2.1.x, 2.2.x before 2.2.5, and 2.5.x before 2.5.2 on TippingPoint IPS allows remote attackers to avoid detection by sending certain fragmented packets.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
3com ≫ Tippingpoint Ips Tos Version 2.1
3com ≫ Tippingpoint Ips Tos Version 2.1.4.6324
3com ≫ Tippingpoint Ips Tos Version 2.2
3com ≫ Tippingpoint Ips Tos Version 2.2.1
3com ≫ Tippingpoint Ips Tos Version 2.2.1.6506
3com ≫ Tippingpoint Ips Tos Version 2.2.2
3com ≫ Tippingpoint Ips Tos Version 2.2.3
3com ≫ Tippingpoint Ips Tos Version 2.2.4
3com ≫ Tippingpoint Ips Tos Version 2.5
3com ≫ Tippingpoint Ips Tos Version 2.5.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.06% | 0.789 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
CWE-20 Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
http://archives.neohapsis.com/archives/fulldisclosure/2007-07/0210.html
http://osvdb.org/35969
http://secunia.com/advisories/26017
http://www.3com.com/securityalert/alerts/3COM-07-002.html
http://www.cybsec.com/vuln/CYBSEC-Security_Pre-Advisory_3Com_TippingPoint_IPS_Detection_Bypass_2.pdf
http://www.securityfocus.com/archive/1/473394/100/0/threaded
http://www.securityfocus.com/bid/24861
http://www.securitytracker.com/id?1018386
http://www.vupen.com/english/advisories/2007/2489
https://exchange.xforce.ibmcloud.com/vulnerabilities/35343