CVE-2008-3703
Estado: ModificadaAlta (10)—
The management console in the Volume Manager Scheduler Service (aka VxSchedService.exe) in Symantec Veritas Storage Foundation for Windows (SFW) 5.0, 5.0 RP1a, and 5.1 accepts NULL NTLMSSP authentication, which allows remote attackers to execute arbitrary code via requests to the service socket that create "snapshots schedules" registry values specifying future command execution. NOTE: this issue exists because of an incomplete fix for CVE-2007-2279.
CVSS
- Versión: 2.0
- Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C
- Puntuación base: 10
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 12%
- Percentil entre todas las CVEs puntuadas: 96
- Fecha de la puntuación: 3/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
Tecnologías afectadas (1)
CWE
- CWE-287
Referencias
- http://secunia.com/advisories/31486
- http://securityreason.com/securityalert/4161
- http://securitytracker.com/id?1020699
- http://seer.entsupport.symantec.com/docs/306386.htm
- http://www.securityfocus.com/archive/1/495481
- http://www.securityfocus.com/archive/1/495487/100/0/threaded
- http://www.securityfocus.com/bid/30596
- http://www.symantec.com/avcenter/security/Content/2008.08.14a.html
- http://www.vupen.com/english/advisories/2008/2395
- http://www.zerodayinitiative.com/advisories/ZDI-08-053/
- https://exchange.xforce.ibmcloud.com/vulnerabilities/44466
- http://secunia.com/advisories/31486
- http://securityreason.com/securityalert/4161
- http://securitytracker.com/id?1020699
- http://seer.entsupport.symantec.com/docs/306386.htm
- http://www.securityfocus.com/archive/1/495481
- http://www.securityfocus.com/archive/1/495487/100/0/threaded
- http://www.securityfocus.com/bid/30596
- http://www.symantec.com/avcenter/security/Content/2008.08.14a.html
- http://www.vupen.com/english/advisories/2008/2395
- http://www.zerodayinitiative.com/advisories/ZDI-08-053/
- https://exchange.xforce.ibmcloud.com/vulnerabilities/44466
JSON original (NVD)
Mostrar
{
"id": "CVE-2008-3703",
"cveTags": [],
"metrics": {
"cvssMetricV2": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"version": "2.0",
"baseScore": 10,
"accessVector": "NETWORK",
"vectorString": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"authentication": "NONE",
"integrityImpact": "COMPLETE",
"accessComplexity": "LOW",
"availabilityImpact": "COMPLETE",
"confidentialityImpact": "COMPLETE"
},
"acInsufInfo": false,
"impactScore": 10,
"baseSeverity": "HIGH",
"obtainAllPrivilege": false,
"exploitabilityScore": 10,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"affected": [
{
"source": "cve@mitre.org",
"affectedData": [
{
"vendor": "n/a",
"product": "n/a",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
]
}
],
"published": "2008-08-18T17:41:00.000",
"references": [
{
"url": "http://secunia.com/advisories/31486",
"tags": [
"Vendor Advisory"
],
"source": "cve@mitre.org"
},
{
"url": "http://securityreason.com/securityalert/4161",
"source": "cve@mitre.org"
},
{
"url": "http://securitytracker.com/id?1020699",
"source": "cve@mitre.org"
},
{
"url": "http://seer.entsupport.symantec.com/docs/306386.htm",
"tags": [
"Patch"
],
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/archive/1/495481",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/archive/1/495487/100/0/threaded",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/bid/30596",
"source": "cve@mitre.org"
},
{
"url": "http://www.symantec.com/avcenter/security/Content/2008.08.14a.html",
"source": "cve@mitre.org"
},
{
"url": "http://www.vupen.com/english/advisories/2008/2395",
"source": "cve@mitre.org"
},
{
"url": "http://www.zerodayinitiative.com/advisories/ZDI-08-053/",
"source": "cve@mitre.org"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/44466",
"source": "cve@mitre.org"
},
{
"url": "http://secunia.com/advisories/31486",
"tags": [
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://securityreason.com/securityalert/4161",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://securitytracker.com/id?1020699",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://seer.entsupport.symantec.com/docs/306386.htm",
"tags": [
"Patch"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securityfocus.com/archive/1/495481",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securityfocus.com/archive/1/495487/100/0/threaded",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securityfocus.com/bid/30596",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.symantec.com/avcenter/security/Content/2008.08.14a.html",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.vupen.com/english/advisories/2008/2395",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.zerodayinitiative.com/advisories/ZDI-08-053/",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/44466",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "CWE-287"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "The management console in the Volume Manager Scheduler Service (aka VxSchedService.exe) in Symantec Veritas Storage Foundation for Windows (SFW) 5.0, 5.0 RP1a, and 5.1 accepts NULL NTLMSSP authentication, which allows remote attackers to execute arbitrary code via requests to the service socket that create \"snapshots schedules\" registry values specifying future command execution. NOTE: this issue exists because of an incomplete fix for CVE-2007-2279."
},
{
"lang": "es",
"value": "La consola de gestión en Volume Manager Scheduler Service (también conocido como VxSchedService.exe) de Symantec Veritas Storage Foundation para Windows (SFW) 5.0, 5.0 RP1a y 5.1 acepta autentificación NULL NTLMSSP, lo que permite a atacantes remotos ejecutar código de su elección mediante peticiones al socket del servicio que crea valores del registro de \"snapshots schedules (horarios de ficheros de captura)\" especificando la ejecución de comandos futuros. NOTA: este problema existe debido a una solución incompleta de CVE-2007-2279."
}
],
"lastModified": "2026-06-16T22:56:20.963",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:symantec:veritas_storage_foundation:5.0:*:windows:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "10C7B114-73FB-4294-8E2E-94B5CB63750D"
},
{
"criteria": "cpe:2.3:a:symantec:veritas_storage_foundation:5.0:rp1a:windows:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "3C14D03F-1728-4D55-A74C-BD42C6F3007B"
},
{
"criteria": "cpe:2.3:a:symantec:veritas_storage_foundation:5.1:*:windows:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "30E4586D-FB79-49F1-A9DE-A6AB53C1471F"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "cve@mitre.org"
}