// For flags

CVE-2007-5580

 

Severity Score

10.0
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Buffer overflow in a certain driver in Cisco Security Agent 4.5.1 before 4.5.1.672, 5.0 before 5.0.0.225, 5.1 before 5.1.0.106, and 5.2 before 5.2.0.238 on Windows allows remote attackers to execute arbitrary code via a crafted SMB packet in a TCP session on port (1) 139 or (2) 445.

Un desbordamiento de búfer en un determinado controlador en Cisco Security Agent versiones 4.5.1 anteriores a 4.5.1.672, versiones 5.0 anteriores a 5.0.0.225, versiones 5.1 anteriores a 5.1.0.106, y versiones 5.2 anteriores a 5.2.0.238 en Windows, permite a los atacantes remotos ejecutar código arbitrario por medio de un paquete SMB especialmente diseñado en una sesión TCP en el puerto (1) 139 o (2) 445.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
Complete
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2007-10-19 CVE Reserved
  • 2007-12-07 CVE Published
  • 2024-08-07 CVE Updated
  • 2024-09-10 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Cisco
Search vendor "Cisco"
Security Agent
Search vendor "Cisco" for product "Security Agent"
2.1
Search vendor "Cisco" for product "Security Agent" and version "2.1"
-
Affected
Cisco
Search vendor "Cisco"
Security Agent
Search vendor "Cisco" for product "Security Agent"
3
Search vendor "Cisco" for product "Security Agent" and version "3"
-
Affected
Cisco
Search vendor "Cisco"
Security Agent
Search vendor "Cisco" for product "Security Agent"
4.0
Search vendor "Cisco" for product "Security Agent" and version "4.0"
-
Affected
Cisco
Search vendor "Cisco"
Security Agent
Search vendor "Cisco" for product "Security Agent"
4.0.1
Search vendor "Cisco" for product "Security Agent" and version "4.0.1"
-
Affected
Cisco
Search vendor "Cisco"
Security Agent
Search vendor "Cisco" for product "Security Agent"
4.0.2
Search vendor "Cisco" for product "Security Agent" and version "4.0.2"
-
Affected
Cisco
Search vendor "Cisco"
Security Agent
Search vendor "Cisco" for product "Security Agent"
4.0.3
Search vendor "Cisco" for product "Security Agent" and version "4.0.3"
-
Affected
Cisco
Search vendor "Cisco"
Security Agent
Search vendor "Cisco" for product "Security Agent"
4.0.3.728
Search vendor "Cisco" for product "Security Agent" and version "4.0.3.728"
-
Affected
Cisco
Search vendor "Cisco"
Security Agent
Search vendor "Cisco" for product "Security Agent"
4.5
Search vendor "Cisco" for product "Security Agent" and version "4.5"
-
Affected
Cisco
Search vendor "Cisco"
Security Agent
Search vendor "Cisco" for product "Security Agent"
4.5.1
Search vendor "Cisco" for product "Security Agent" and version "4.5.1"
-
Affected
Cisco
Search vendor "Cisco"
Security Agent
Search vendor "Cisco" for product "Security Agent"
4.5.1.639
Search vendor "Cisco" for product "Security Agent" and version "4.5.1.639"
-
Affected
Cisco
Search vendor "Cisco"
Security Agent
Search vendor "Cisco" for product "Security Agent"
4.5.1.657
Search vendor "Cisco" for product "Security Agent" and version "4.5.1.657"
-
Affected
Cisco
Search vendor "Cisco"
Security Agent
Search vendor "Cisco" for product "Security Agent"
4.5.1.659
Search vendor "Cisco" for product "Security Agent" and version "4.5.1.659"
-
Affected
Cisco
Search vendor "Cisco"
Security Agent
Search vendor "Cisco" for product "Security Agent"
5.0
Search vendor "Cisco" for product "Security Agent" and version "5.0"
-
Affected
Cisco
Search vendor "Cisco"
Security Agent
Search vendor "Cisco" for product "Security Agent"
5.0.0.201
Search vendor "Cisco" for product "Security Agent" and version "5.0.0.201"
-
Affected
Cisco
Search vendor "Cisco"
Security Agent
Search vendor "Cisco" for product "Security Agent"
5.0.193
Search vendor "Cisco" for product "Security Agent" and version "5.0.193"
-
Affected
Cisco
Search vendor "Cisco"
Security Agent
Search vendor "Cisco" for product "Security Agent"
5.1
Search vendor "Cisco" for product "Security Agent" and version "5.1"
-
Affected
Cisco
Search vendor "Cisco"
Security Agent
Search vendor "Cisco" for product "Security Agent"
5.1.79
Search vendor "Cisco" for product "Security Agent" and version "5.1.79"
-
Affected
Cisco
Search vendor "Cisco"
Security Agent
Search vendor "Cisco" for product "Security Agent"
5.2
Search vendor "Cisco" for product "Security Agent" and version "5.2"
-
Affected