CVE-2007-6273

NONE

Multiple format string vulnerabilities in the configuration file in SonicWALL GLobal VPN Client 3.1.556 and 4.0.0.810 allow user-assisted remote attackers to execute arbitrary code via format string s

Publicado: 12/7/2007Actualizado: 4/9/2025

Descripción

Multiple format string vulnerabilities in the configuration file in SonicWALL GLobal VPN Client 3.1.556 and 4.0.0.810 allow user-assisted remote attackers to execute arbitrary code via format string specifiers in the (1) Hostname tag or the (2) name attribute in the Connection tag. NOTE: there might not be any realistic circumstances in which this issue crosses privilege boundaries.

Análisis IAImpulsado por IA

Productos Afectados

sonicwallglobal_vpn_client
3.1.556
sonicwallglobal_vpn_client
4.0.0.810

Exploits Disponibles (1)

Referencias