{"api_version":"1","generated_at":"2026-07-23T10:39:12+00:00","cve":"CVE-2007-6701","urls":{"html":"https://cve.report/CVE-2007-6701","api":"https://cve.report/api/cve/CVE-2007-6701.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2007-6701","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2007-6701"},"summary":{"title":"CVE-2007-6701","description":"Multiple stack-based buffer overflows in the Spooler service (nwspool.dll) in Novell Client 4.91 SP4 for Windows allow remote attackers to execute arbitrary code via long arguments to multiple unspecified RPC functions, aka Novell bug 287919, a different vulnerability than CVE-2007-2954.","state":"PUBLISHED","assigner":"mitre","published_at":"2008-02-13 21:00:00","updated_at":"2026-04-23 00:35:47"},"problem_types":["CWE-119","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"10","severity":"","vector":"AV:N/AC:L/Au:N/C:C/I:C/A:C","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"}}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/35653","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/35653","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://securitytracker.com/id?1018471","name":"http://securitytracker.com/id?1018471","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityTracker.com Archives - Novell Client 'NWSPOOL.DLL' Stack Overflow Lets Remote Users Execute Arbitrary Code","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/26238","name":"http://secunia.com/advisories/26238","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"],"title":"Novell Client NWSPOOL.DLL Buffer Overflow Vulnerability - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/25092","name":"http://www.securityfocus.com/bid/25092","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch"],"title":"Novell Client NWSPOOL.DLL Unspecified Buffer Overflow Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5005400.html","name":"http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5005400.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Novell Client 4.91 Post-SP4 NWSPOOL.DLL","mime":"text/html","httpstatus":"404","archivestatus":"200"},{"url":"http://www.zerodayinitiative.com/advisories/ZDI-07-045.html","name":"http://www.zerodayinitiative.com/advisories/ZDI-07-045.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"ZDI-07-045","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://archives.neohapsis.com/archives/bugtraq/2007-08/0082.html","name":"http://archives.neohapsis.com/archives/bugtraq/2007-08/0082.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"text/html","httpstatus":"-1","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2007-6701","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2007-6701","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2007","cve_id":"6701","vulnerable":"0","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"microsoft","cpe5":"windows","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"6701","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"novell","cpe5":"client","cpe6":"4.91","cpe7":"sp4","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T16:18:20.517Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"20070806 ZDI-07-045: Novell Client NWSPOOL.DLL Stack Overflow Vulnerability","tags":["mailing-list","x_refsource_BUGTRAQ","x_transferred"],"url":"http://archives.neohapsis.com/archives/bugtraq/2007-08/0082.html"},{"name":"26238","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/26238"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5005400.html"},{"name":"25092","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/25092"},{"name":"1018471","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://securitytracker.com/id?1018471"},{"tags":["x_refsource_MISC","x_transferred"],"url":"http://www.zerodayinitiative.com/advisories/ZDI-07-045.html"},{"name":"novell-nwspool-unspecified(35653)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/35653"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2007-08-06T00:00:00.000Z","descriptions":[{"lang":"en","value":"Multiple stack-based buffer overflows in the Spooler service (nwspool.dll) in Novell Client 4.91 SP4 for Windows allow remote attackers to execute arbitrary code via long arguments to multiple unspecified RPC functions, aka Novell bug 287919, a different vulnerability than CVE-2007-2954."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-08-07T12:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"20070806 ZDI-07-045: Novell Client NWSPOOL.DLL Stack Overflow Vulnerability","tags":["mailing-list","x_refsource_BUGTRAQ"],"url":"http://archives.neohapsis.com/archives/bugtraq/2007-08/0082.html"},{"name":"26238","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/26238"},{"tags":["x_refsource_CONFIRM"],"url":"http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5005400.html"},{"name":"25092","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/25092"},{"name":"1018471","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://securitytracker.com/id?1018471"},{"tags":["x_refsource_MISC"],"url":"http://www.zerodayinitiative.com/advisories/ZDI-07-045.html"},{"name":"novell-nwspool-unspecified(35653)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/35653"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2007-6701","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Multiple stack-based buffer overflows in the Spooler service (nwspool.dll) in Novell Client 4.91 SP4 for Windows allow remote attackers to execute arbitrary code via long arguments to multiple unspecified RPC functions, aka Novell bug 287919, a different vulnerability than CVE-2007-2954."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"20070806 ZDI-07-045: Novell Client NWSPOOL.DLL Stack Overflow Vulnerability","refsource":"BUGTRAQ","url":"http://archives.neohapsis.com/archives/bugtraq/2007-08/0082.html"},{"name":"26238","refsource":"SECUNIA","url":"http://secunia.com/advisories/26238"},{"name":"http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5005400.html","refsource":"CONFIRM","url":"http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5005400.html"},{"name":"25092","refsource":"BID","url":"http://www.securityfocus.com/bid/25092"},{"name":"1018471","refsource":"SECTRACK","url":"http://securitytracker.com/id?1018471"},{"name":"http://www.zerodayinitiative.com/advisories/ZDI-07-045.html","refsource":"MISC","url":"http://www.zerodayinitiative.com/advisories/ZDI-07-045.html"},{"name":"novell-nwspool-unspecified(35653)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/35653"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2007-6701","datePublished":"2008-02-13T20:00:00.000Z","dateReserved":"2008-02-13T00:00:00.000Z","dateUpdated":"2024-08-07T16:18:20.517Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2008-02-13 21:00:00","lastModifiedDate":"2026-04-23 00:35:47","problem_types":["CWE-119","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10,"impactScore":10,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:o:microsoft:windows:*:*:*:*:*:*:*:*","matchCriteriaId":"2CF61F35-5905-4BA9-AD7E-7DB261D2F256"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:novell:client:4.91:sp4:*:*:*:*:*:*","matchCriteriaId":"EDDFB0E9-EF4C-4E9E-9369-453AF2A8481F"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2007","CveId":"6701","Ordinal":"1","Title":"CVE-2007-6701","CVE":"CVE-2007-6701","Year":"2007"},"notes":[{"CveYear":"2007","CveId":"6701","Ordinal":"1","NoteData":"Multiple stack-based buffer overflows in the Spooler service (nwspool.dll) in Novell Client 4.91 SP4 for Windows allow remote attackers to execute arbitrary code via long arguments to multiple unspecified RPC functions, aka Novell bug 287919, a different vulnerability than CVE-2007-2954.","Type":"Description","Title":"CVE-2007-6701"},{"CveYear":"2007","CveId":"6701","Ordinal":"2","NoteData":"2008-02-13","Type":"Other","Title":"Published"},{"CveYear":"2007","CveId":"6701","Ordinal":"3","NoteData":"2017-08-07","Type":"Other","Title":"Modified"}]}}}