CVE-2007-2617

N/A Unknown
Published: May 11, 2007 Modified: April 23, 2026
View on NVD

Description

srsexec in Sun Remote Services (SRS) Net Connect Software Proxy Core package in Sun Solaris 10 does not enforce file permissions when opening files, which allows local users to read the first line of arbitrary files via the -d and -v options.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://osvdb.org/35940
Source: cve@mitre.org
http://secunia.com/advisories/25194
Source: cve@mitre.org
Vendor Advisory
http://www.securityfocus.com/bid/23915
Source: cve@mitre.org
Patch
http://osvdb.org/35940
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/25194
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102891-1
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
http://www.securityfocus.com/bid/23915
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
http://www.securitytracker.com/id?1018046
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2007/1769
Source: af854a3a-2127-422b-91ae-364da2661108
https://exchange.xforce.ibmcloud.com/vulnerabilities/34223
Source: af854a3a-2127-422b-91ae-364da2661108

18 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
10.4%
93th percentile
Exploitation Status
Not in CISA KEV

Affected Vendors

sun