Vulnerability Name: | CVE-2007-1204 (CCN-33268) | ||||||||
Assigned: | 2007-04-10 | ||||||||
Published: | 2007-04-10 | ||||||||
Updated: | 2018-10-16 | ||||||||
Summary: | Stack-based buffer overflow in the Universal Plug and Play (UPnP) service in Microsoft Windows XP SP2 allows remote attackers on the same subnet to execute arbitrary code via crafted HTTP headers in request or notification messages, which trigger memory corruption. | ||||||||
CVSS v3 Severity: | 10.0 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
| ||||||||
CVSS v2 Severity: | 6.8 Medium (CVSS v2 Vector: AV:A/AC:H/Au:N/C:C/I:C/A:C) 5.0 Medium (Temporal CVSS v2 Vector: AV:A/AC:H/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)
7.4 High (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-119 | ||||||||
Vulnerability Consequences: | Gain Access | ||||||||
References: | Source: MITRE Type: CNA CVE-2007-1204 Source: IDEFENSE Type: UNKNOWN 20070410 Microsoft Windows Universal Plug and Play Memory Corruption Vulnerability Source: CCN Type: SA24822 Microsoft Windows XP UPnP Memory Corruption Vulnerability Source: SECUNIA Type: Vendor Advisory 24822 Source: CCN Type: SECTRACK ID: 1017895 Windows XP Universal Plug and Play Lets Remote Users on the Local Subnet Execute Arbitrary Code Source: CCN Type: ASA-2007-158 MS07-019 Vulnerability in Universal Plug and Play Could Allow Remote Code Execution (931261) Source: CCN Type: Microsoft Security Bulletin MS07-019 Vulnerability in Universal Plug and Play Could Allow Remote Code Execution (931261) Source: OSVDB Type: UNKNOWN 34010 Source: CCN Type: OSVDB ID: 34010 Microsoft Windows XP UPnP Remote Memory Corruption Source: HP Type: UNKNOWN HPSBST02208 Source: BID Type: UNKNOWN 23371 Source: CCN Type: BID-23371 Microsoft Windows UPnP Remote Stack Buffer Overflow Vulnerability Source: SECTRACK Type: UNKNOWN 1017895 Source: VUPEN Type: Vendor Advisory ADV-2007-1323 Source: MS Type: UNKNOWN MS07-019 Source: XF Type: UNKNOWN win-upnp-http-bo(33268) Source: CCN Type: iDefense Labs PUBLIC ADVISORY: 04.10.07 Microsoft Windows Universal Plug and Play Memory Corruption Vulnerability Source: OVAL Type: UNKNOWN oval:org.mitre.oval:def:2049 | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: ![]() | ||||||||
Oval Definitions | |||||||||
| |||||||||
BACK |