CVE-2007-3286: Buffer Overflow
Published Sep 19, 2007
·Updated
Multiple buffer overflows in unspecified ActiveX controls in COM objects in Avaya IP Softphone R5.2 before SP3, and R6.0, allow remote attackers to execute arbitrary code via unspecified vectors.
Affected Software
2 affected components
Avaya Ip Soft Phone=6.0
Avaya Ip Soft Phone<=5.2
Event History
Sep 19, 2007
CVE Published
06:17 PM
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-3286?
CVE-2007-3286 is considered critical due to its potential to allow remote code execution.
2
How do I fix CVE-2007-3286?
To fix CVE-2007-3286, update to Avaya IP Softphone version 5.2 SP3 or later, or version 6.0 SP2 and later.
3
What are the implications of CVE-2007-3286 for users?
Users vulnerable to CVE-2007-3286 may be at risk of arbitrary code execution, potentially compromising the integrity of their systems.
4
Which versions of Avaya IP Softphone are affected by CVE-2007-3286?
CVE-2007-3286 affects Avaya IP Softphone versions prior to SP3 for R5.2 and version R6.0.
5
Can CVE-2007-3286 be exploited remotely?
Yes, CVE-2007-3286 can be exploited remotely, allowing attackers to execute arbitrary code without user intervention.