Lucene search

K
cveMitreCVE-2007-3537
HistoryJul 03, 2007 - 8:30 p.m.

CVE-2007-3537

2007-07-0320:30:00
mitre
web.nvd.nist.gov
23
cve-2007-3537
ibm os/400
i5/os
v4r2m0
v5r3m0
iseries
tcp syn-fin
firewall bypass
system security

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:C/I:N/A:N

AI Score

6.4

Confidence

Low

EPSS

0.059

Percentile

93.4%

IBM OS/400 (aka i5/OS) V4R2M0 through V5R3M0 on iSeries machines sends responses to TCP SYN-FIN packets, which allows remote attackers to obtain system information and possibly bypass firewall rules.

Affected configurations

Nvd
Node
ibmos_400Matchr520
OR
ibmos_400Matchv4r2m0
OR
ibmos_400Matchv4r3
OR
ibmos_400Matchv4r4
OR
ibmos_400Matchv4r5
OR
ibmos_400Matchv5r1
OR
ibmos_400Matchv5r2m0
OR
ibmos_400Matchv5r3m0
VendorProductVersionCPE
ibmos_400r520cpe:2.3:o:ibm:os_400:r520:*:*:*:*:*:*:*
ibmos_400v4r2m0cpe:2.3:o:ibm:os_400:v4r2m0:*:*:*:*:*:*:*
ibmos_400v4r3cpe:2.3:o:ibm:os_400:v4r3:*:*:*:*:*:*:*
ibmos_400v4r4cpe:2.3:o:ibm:os_400:v4r4:*:*:*:*:*:*:*
ibmos_400v4r5cpe:2.3:o:ibm:os_400:v4r5:*:*:*:*:*:*:*
ibmos_400v5r1cpe:2.3:o:ibm:os_400:v5r1:*:*:*:*:*:*:*
ibmos_400v5r2m0cpe:2.3:o:ibm:os_400:v5r2m0:*:*:*:*:*:*:*
ibmos_400v5r3m0cpe:2.3:o:ibm:os_400:v5r3m0:*:*:*:*:*:*:*

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:C/I:N/A:N

AI Score

6.4

Confidence

Low

EPSS

0.059

Percentile

93.4%

Related for CVE-2007-3537