CVE-2007-3911

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
30/07/2007
Last modified:
09/04/2025

Description

Multiple heap-based buffer overflows in (1) clsscheduler.exe (aka scheduler client) and (2) srvscheduler.exe (aka scheduler server) in BakBone NetVault Reporter 3.5 before Update4 allow remote attackers to execute arbitrary code via long filename arguments in HTTP requests.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:bakbone:netvault_reporter:*:*:*:*:*:*:*:* 3.5update3 (including)