Back to search
CVE-2007-6507
Published: Dec 20, 2007
Modified: Aug 7, 2024
PUBLISHED
Description
SpntSvc.exe daemon in Trend Micro ServerProtect 5.58 for Windows, before Security Patch 4, exposes unspecified dangerous sub-functions from StRpcSrv.dll in the DCE/RPC interface, which allows remote attackers to obtain "full file system access" and execute arbitrary code.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
44318
vdb-entry
x_refsource_OSVDB
26912
vdb-entry
x_refsource_BID
http://www.zerodayinitiative.com/advisories/ZDI-07-077.html
x_refsource_MISC
20071217 ZDI-07-077: Trend Micro ServerProtect StRpcSrv.dll Insecure Method Exposure Vulnerability
mailing-list
x_refsource_BUGTRAQ
3475
third-party-advisory
x_refsource_SREASON
26523
third-party-advisory
x_refsource_SECUNIA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now