Vulnerability Name: | CVE-2007-5170 (CCN-36873) | ||||||||
Assigned: | 2007-09-28 | ||||||||
Published: | 2007-09-28 | ||||||||
Updated: | 2017-07-29 | ||||||||
Summary: | Unspecified vulnerability in the embedded service processor (SP) before 3.09 in Sun Fire X2100 M2 and X2200 M2 Embedded Lights Out Manager (ELOM) allows remote attackers to send arbitrary network traffic and use ELOM as a spam proxy. | ||||||||
CVSS v3 Severity: | 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N)
| ||||||||
CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N) 3.7 Low (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N/E:U/RL:OF/RC:C)
3.7 Low (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N/E:U/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-264 | ||||||||
Vulnerability Consequences: | Gain Access | ||||||||
References: | Source: MITRE Type: CNA CVE-2007-5170 Source: OSVDB Type: UNKNOWN 40832 Source: CCN Type: SA27027 Sun Fire X2100 / X2200 Embedded Lights Out Manager Security Bypass Source: SECUNIA Type: Vendor Advisory 27027 Source: CCN Type: SECTRACK ID: 1018756 Sun Fire Server Embedded Lights Out Manager Software Lets Remote Users Send SPAM via the System Source: SECTRACK Type: UNKNOWN 1018756 Source: CCN Type: Sun Alert ID: 102942 Sun Fire X2100 M2/X2200 M2 ELOM is Vulnerable to Unauthorized Access Source: SUNALERT Type: Patch 102942 Source: SUNALERT Type: Vendor Advisory 200051 Source: CCN Type: OSVDB ID: 40832 Sun Fire X2100 / X2200 Embedded Lights Out Manager (ELOM) Unspecified Mail Relay Source: CCN Type: OSVDB ID: 40835 Sun Fire X2100/X2200 Embedded Lights Out Manager (ELOM) Unspecified Remote Command Execution Source: BID Type: UNKNOWN 25863 Source: CCN Type: BID-25863 Sun Fire X2100 M2 And X2200 M2 ELOM Unauthorized Access Vulnerability Source: VUPEN Type: Vendor Advisory ADV-2007-3306 Source: XF Type: UNKNOWN sunfire-elom-unauthorized-access(36873) Source: XF Type: UNKNOWN sunfire-elom-unauthorized-access(36873) | ||||||||
Vulnerable Configuration: | Configuration 1:![]() | ||||||||
BACK |