9.3

CVE-2007-6273

Exploit
Multiple format string vulnerabilities in the configuration file in SonicWALL GLobal VPN Client 3.1.556 and 4.0.0.810 allow user-assisted remote attackers to execute arbitrary code via format string specifiers in the (1) Hostname tag or the (2) name attribute in the Connection tag.  NOTE: there might not be any realistic circumstances in which this issue crosses privilege boundaries.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Sonicwall ≫ Global Vpn Client Version 3.1.556
Sonicwall ≫ Global Vpn Client Version 4.0.0.810
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 6.2% 0.926
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 9.3 8.6 10
AV:N/AC:M/Au:N/C:C/I:C/A:C
CWE-134 Use of Externally-Controlled Format String

The product uses a function that accepts a format string as an argument, but the format string originates from an external source.

http://marc.info/?l=bugtraq&m=119678272603064&w=2
Exploit
http://secunia.com/advisories/27917
Vendor Advisory
http://www.sec-consult.com/305.html
Exploit
http://www.securityfocus.com/bid/26689
Exploit
http://www.securitytracker.com/id?1019038
http://www.vupen.com/english/advisories/2007/4094