CVE-2007-6507
30Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 37%
exploitation probability
37%top 2% of all CVEs
observed exploitation
nono source reports it
SpntSvc.exe daemon in Trend Micro ServerProtect 5.58 for Windows, before Security Patch 4, exposes unspecified dangerous sub-functions from StRpcSrv.dll in the DCE/RPC interface, which allows remote attackers to obtain "full file system access" and execute arbitrary code.
Affected products
n/a · n/aReferences
http://osvdb.org/44318http://secunia.com/advisories/26523http://securityreason.com/securityalert/3475http://www.securityfocus.com/archive/1/485250/100/0/threadedhttp://www.securityfocus.com/bid/26912http://www.trendmicro.com/ftp/documentation/readme/spnt_558_win_en_securitypatch4_readme.txthttp://www.zerodayinitiative.com/advisories/ZDI-07-077.html