CVE-2007-5381
28Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 15%
from disclosure to weapon0 days
Published on NVDOct 12
1st PoCOct 10
exploitation probability
15%top 4% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Stack-based buffer overflow in the Line Printer Daemon (LPD) in Cisco IOS before 12.2(18)SXF11, 12.4(16a), and 12.4(2)T6 allow remote attackers to execute arbitrary code by setting a long hostname on the target system, then causing an error message to be printed, as demonstrated by a telnet session to the LPD from a source port other than 515.
Affected products
n/a · n/apublic PoCs found — 1✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/30652⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://osvdb.org/37935http://secunia.com/advisories/27169https://exchange.xforce.ibmcloud.com/vulnerabilities/37046http://www.cisco.com/en/US/products/products_security_response09186a00808d72e3.htmlhttp://www.irmplc.com/index.php/155-Advisory-024http://www.kb.cert.org/vuls/id/230505http://www.securityfocus.com/bid/26001http://www.securitytracker.com/id?1018798http://www.vupen.com/english/advisories/2007/3457