Lucene search

K
cveMitreCVE-2007-3334
HistoryJun 21, 2007 - 10:30 p.m.

CVE-2007-3334

2007-06-2122:30:00
mitre
web.nvd.nist.gov
33
cve-2007-3334
buffer overflow
heap-based
ingres database server
ca
etrust secure content manager
remote code execution
nvd

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.5

Confidence

Low

EPSS

0.799

Percentile

98.3%

Multiple heap-based buffer overflows in the (1) Communications Server (iigcc.exe) and (2) Data Access Server (iigcd.exe) components for Ingres Database Server 3.0.3, as used in CA (Computer Associates) products including eTrust Secure Content Manager r8 on Windows, allow remote attackers to execute arbitrary code via unknown vectors.

Affected configurations

Nvd
Node
microsoftall_windows
AND
caetrust_secure_content_managerMatch8.0
OR
ingresdatabase_serverMatch3.0.3
VendorProductVersionCPE
microsoftall_windows*cpe:2.3:o:microsoft:all_windows:*:*:*:*:*:*:*:*
caetrust_secure_content_manager8.0cpe:2.3:a:ca:etrust_secure_content_manager:8.0:*:*:*:*:*:*:*
ingresdatabase_server3.0.3cpe:2.3:a:ingres:database_server:3.0.3:*:*:*:*:*:*:*

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.5

Confidence

Low

EPSS

0.799

Percentile

98.3%