CVE-2007-1070

CVSS 10.0 - HIGH
Description

Multiple stack-based buffer overflows in Trend Micro ServerProtect for Windows and EMC 5.58, and for Network Appliance Filer 5.61 and 5.62, allow remote attackers to execute arbitrary code via crafted RPC requests to TmRpcSrv.dll that trigger overflows when calling the (1) CMON_NetTestConnection, (2) CMON_ActiveUpdate, and (3) CMON_ActiveRollback functions in (a) StCommon.dll, and (4) ENG_SetRealTimeScanConfigInfo and (5) ENG_SendEMail functions in (b) eng50.dll.

Affected Products
10
Vendor Product Version
microsoft windows_2000 All versions
microsoft windows_2003_server r2
microsoft windows_2003_server sp2
microsoft windows_nt All versions
microsoft windows_vista All versions
microsoft windows_xp All versions
trend_micro serverprotect 5.58
trend_micro serverprotect 5.58
trend_micro serverprotect 5.61
trend_micro serverprotect 5.62
Weakness Types
NVD-CWE-Other
CVE Information
CVE ID:
CVE-2007-1070
Published:
2007-02-21
Modified:
2026-04-23
CVSS Score:
10.0
Severity:
HIGH
Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C
Affected Vendors
trend_micro microsoft
Quick Actions
CVSS Severity Scale
0.0 - 3.9 LOW
4.0 - 6.9 MEDIUM
7.0 - 8.9 HIGH
9.0 - 10.0 CRITICAL