CVE-2007-0931
Published Feb 14, 2007
Last updated 6 years ago
Overview
- Description
- Heap-based buffer overflow in the management interfaces in (1) Aruba Mobility Controllers 200, 800, 2400, and 6000 and (2) Alcatel-Lucent OmniAccess Wireless 43xx and 6000 allows remote attackers to cause a denial of service (process crash) and possibly execute arbitrary code via long credential strings.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.5
- Impact score
- 6.4
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:alcatel-lucent:omniaccess_wireless:43xx:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "53BCE4F4-A436-4498-8C12-FDDFEB504300" }, { "criteria": "cpe:2.3:h:alcatel-lucent:omniaccess_wireless:6000:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1A0D477D-A19D-42D0-9110-B3CDDBC4BDD6" }, { "criteria": "cpe:2.3:h:aruba:mobility_controller:200:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D0C73F0F-B653-4B35-B544-93746AE3BA28" }, { "criteria": "cpe:2.3:h:aruba:mobility_controller:800:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "610F057C-6053-437D-8661-2F21B0164573" }, { "criteria": "cpe:2.3:h:aruba:mobility_controller:2400:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8BC71AD4-C736-4187-8C0C-06C876E99B48" }, { "criteria": "cpe:2.3:h:aruba:mobility_controller:6000:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "610D9458-C776-41E6-98E5-CA67B82C159F" } ], "operator": "OR" } ] } ]