CVE-2007-5717
Summary
| CVE | CVE-2007-5717 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2007-10-30 21:46:00 UTC |
| Updated | 2017-07-29 01:33:00 UTC |
| Description | Unspecified vulnerability in Sun Fire X2100 M2 and X2200 M2 Embedded Lights Out Manager (ELOM) on x86 before firmware 2.70 allows remote attackers to execute arbitrary commands as root on the Service Processor (SP) via unspecified vectors, a different vulnerability than CVE-2007-5170. |
Risk And Classification
Problem Types: NVD-CWE-noinfo
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Sun | Embedded Lights Out Manager | All | All | All | All |
| Application | Sun | Embedded Lights Out Manager | All | All | All | All |
| Hardware | Sun | Sun Fire | x2100m2 | firmware_2.70 | All | All |
| Hardware | Sun | Sun Fire | x2200m2 | firmware_2.70 | All | All |
| Hardware | Sun | Sun Fire | x2100m2 | firmware_2.70 | All | All |
| Hardware | Sun | Sun Fire | x2200m2 | firmware_2.70 | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Sun Fire X2100/X2200 Embedded Lights Out Manager Command Execution - Advisories - Secunia | SECUNIA | secunia.com | |
| Sun Fire X2100 M2 And X2200 M2 ELOM Unspecified Remote Arbitrary Command Execution Vulnerability | BID | www.securityfocus.com | |
| Sun Fire Server Embedded Lights Out Manager Software Lets Remote Users Execute Arbitrary Commands - SecurityTracker | SECTRACK | www.securitytracker.com | |
| 40835 | OSVDB | osvdb.org | |
| 103127 | SUNALERT | sunsolve.sun.com | Patch |
| 200667 | SUNALERT | sunsolve.sun.com | |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | VUPEN | www.vupen.com | |
| IBM X-Force Exchange | XF | exchange.xforce.ibmcloud.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.