HomeFreeradiusCVE-2007-0080

CVE-2007-0080

UNKNOWN
6.6CVSS
Published: 2007-01-05
Updated: 2025-04-09
AI Analysis

Description

Buffer overflow in the SMB_Connect_Server function in FreeRadius 1.1.3 and earlier allows attackers to execute arbitrary code related to the server desthost field of an SMB_Handle_Type instance. NOTE: the impact of this issue has been disputed by a reliable third party and the vendor, who states that exploitation is limited "only to local administrators who have write access to the server configuration files." CVE concurs with the dispute

CVSS Metrics

Vector
AV:L/AC:M/Au:S/C:C/I:C/A:C
Access Vector
local
Access Cmplx
medium
Auth
single
Confidentiality
complete
Integrity
complete
Availability
complete
Weaknesses
CWE-119

Metadata

Primary Vendor
FREERADIUS
Published
1/5/2007
Last Modified
4/9/2025
Source
NIST NVD
Note: Verify all details with official vendor sources before applying patches.

Affected Products

freeradius : freeradius

AI-Powered Remediation

Generate remediation guidance or a C-suite brief for this vulnerability.

Executive Intelligence Brief

CVE-CVE-2007-0080 | UNKNOWN Severity | CVEDatabase.com | CVEDatabase.com