CVE-2007-6273

NONE

Multiple format string vulnerabilities in the configuration file in SonicWALL GLobal VPN Client 3.1.556 and 4.0.0.810 allow user-assisted remote attackers to execute arbitrary code via format string s

Veröffentlicht: 12/7/2007Aktualisiert: 4/9/2025

Beschreibung

Multiple format string vulnerabilities in the configuration file in SonicWALL GLobal VPN Client 3.1.556 and 4.0.0.810 allow user-assisted remote attackers to execute arbitrary code via format string specifiers in the (1) Hostname tag or the (2) name attribute in the Connection tag. NOTE: there might not be any realistic circumstances in which this issue crosses privilege boundaries.

KI-AnalyseKI-gestützt

Betroffene Produkte

sonicwallglobal_vpn_client
3.1.556
sonicwallglobal_vpn_client
4.0.0.810

Verfügbare Exploits (1)

Referenzen