VulnerabilityModified
CVE-2007-3533
The 3Com IntelliJack Switch NJ220 before 2.0.23 allows remote attackers to cause a denial of service (reboot and reporting outage) via a loopback packet with zero in the length field.
MEDIUM 5.0EPSS 1.65%
Does this matter?
Lower severity and a low EPSS score (1.65%). Track it; it rarely justifies an emergency change on its own.
Description
The 3Com IntelliJack Switch NJ220 before 2.0.23 allows remote attackers to cause a denial of service (reboot and reporting outage) via a loopback packet with zero in the length field.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
- EPSS
- 1.65% probability · 75th percentile
- CISA KEV
- Not listed
- Affected
- 3com/3cnj220
- Source
- cve@mitre.org
References
- http://osvdb.org/37791
- http://secunia.com/advisories/25883Vendor Advisory
- http://support.3com.com/infodeli/tools/nj/nj220_02_00_23_readme.pdf
- http://www.securityfocus.com/bid/24705
- http://www.vupen.com/english/advisories/2007/2386
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35172
- http://osvdb.org/37791
- http://secunia.com/advisories/25883Vendor Advisory
- http://support.3com.com/infodeli/tools/nj/nj220_02_00_23_readme.pdf
- http://www.securityfocus.com/bid/24705
- http://www.vupen.com/english/advisories/2007/2386
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35172
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.