CVE-2007-5243

Scores

EPSS

0.830high83.0%
0%20%40%60%80%100%

Percentile: 83.0%

CVSS

9.3critical2.0
0246810

CVSS Score: 9.3/10

All CVSS Scores

CVSS 2.0
9.3

Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Description

Multiple stack-based buffer overflows in Borland InterBase LI 8.0.0.53 through 8.1.0.253, and WI 5.1.1.680 through 8.1.0.257, allow remote attackers to execute arbitrary code via (1) a long service attach request on TCP port 3050 to the (a) SVC_attach or (b) INET_connect function, (2) a long create request on TCP port 3050 to the © isc_create_database or (d) jrd8_create_database function, (3) a long attach request on TCP port 3050 to the (e) isc_attach_database or (f) PWD_db_aliased function, or unspecified vectors involving the (4) jrd8_attach_database or (5) expand_filename2 function.

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

nvd

CWEs

CWE-119

Exploits

Exploit ID: 10020

Source: exploitdb

URL: https://www.exploit-db.com/exploits/10020

Exploit ID: 10021

Source: exploitdb

URL: https://www.exploit-db.com/exploits/10021

Exploit ID: 16420

Source: exploitdb

URL: https://www.exploit-db.com/exploits/16420

Exploit ID: 16432

Source: exploitdb

URL: https://www.exploit-db.com/exploits/16432

Exploit ID: 16437

Source: exploitdb

URL: https://www.exploit-db.com/exploits/16437

Exploit ID: 16440

Source: exploitdb

URL: https://www.exploit-db.com/exploits/16440

Exploit ID: 16447

Source: exploitdb

URL: https://www.exploit-db.com/exploits/16447

Exploit ID: 16449

Source: exploitdb

URL: https://www.exploit-db.com/exploits/16449

Exploit ID: 16839

Source: exploitdb

URL: https://www.exploit-db.com/exploits/16839

Exploit ID: 16843

Source: exploitdb

URL: https://www.exploit-db.com/exploits/16843

Exploit ID: 16844

Source: exploitdb

URL: https://www.exploit-db.com/exploits/16844

Exploit ID: 9954

Source: exploitdb

URL: https://www.exploit-db.com/exploits/9954

Vulnerable Software (1)

Type: Configuration

Vendor: *

Product: interbase

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:borland_software:interbase:li_8.0.0.53:*:*:*:*:*:*:*",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:a:borland_software:interba...

Source: nvd

End of list