peter bassill · operator
$ cve CVE-2007-3334 JSON

CVE-2007-3334 EXPLOIT

10.0
HIGH · CVSS 2.0 · EPSS 10.3% (pctl 96)

Patch early

A public exploit exists.

Description

Multiple heap-based buffer overflows in the (1) Communications Server (iigcc.exe) and (2) Data Access Server (iigcd.exe) components for Ingres Database Server 3.0.3, as used in CA (Computer Associates) products including eTrust Secure Content Manager r8 on Windows, allow remote attackers to execute arbitrary code via unknown vectors.

Scoring

CVSS10.0 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
EPSS10.32% — more likely to be exploited than 96% of all CVEs
On CISA KEVno
Public exploityes
Published2007-06-21
Last modified2026-06-16

Affected (3)

VendorProduct
caetrust secure content manager
ingresdatabase server
microsoftall windows

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD