CVE-2007-4532
Estado: ModificadaAlta (7.8)—
Soldat game server 1.4.2 and earlier, and dedicated server 2.6.2 and earlier, allows remote attackers to cause a denial of service (client lockout) via a series of UDP join packets from a spoofed IP address, which triggers temporary blacklisting of this IP address.
CVSS
- Versión: 2.0
- Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C
- Puntuación base: 7.8
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 1.66%
- Percentil entre todas las CVEs puntuadas: 76
- Fecha de la puntuación: 5/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
Tecnologías afectadas (2)
CWE
- NVD-CWE-Other
Referencias
- http://aluigi.altervista.org/adv/soldatdos-adv.txt
- http://aluigi.org/poc/soldatdos.zip
- http://www.securityfocus.com/archive/1/477624/100/0/threaded
- http://www.securityfocus.com/bid/25426
- https://exchange.xforce.ibmcloud.com/vulnerabilities/36232
- http://aluigi.altervista.org/adv/soldatdos-adv.txt
- http://aluigi.org/poc/soldatdos.zip
- http://www.securityfocus.com/archive/1/477624/100/0/threaded
- http://www.securityfocus.com/bid/25426
- https://exchange.xforce.ibmcloud.com/vulnerabilities/36232
JSON original (NVD)
Mostrar
{
"id": "CVE-2007-4532",
"cveTags": [],
"metrics": {
"cvssMetricV2": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"version": "2.0",
"baseScore": 7.8,
"accessVector": "NETWORK",
"vectorString": "AV:N/AC:L/Au:N/C:N/I:N/A:C",
"authentication": "NONE",
"integrityImpact": "NONE",
"accessComplexity": "LOW",
"availabilityImpact": "COMPLETE",
"confidentialityImpact": "NONE"
},
"acInsufInfo": false,
"impactScore": 6.9,
"baseSeverity": "HIGH",
"obtainAllPrivilege": false,
"exploitabilityScore": 10,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"affected": [
{
"source": "cve@mitre.org",
"affectedData": [
{
"vendor": "n/a",
"product": "n/a",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
]
}
],
"published": "2007-08-25T00:17:00.000",
"references": [
{
"url": "http://aluigi.altervista.org/adv/soldatdos-adv.txt",
"source": "cve@mitre.org"
},
{
"url": "http://aluigi.org/poc/soldatdos.zip",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/archive/1/477624/100/0/threaded",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/bid/25426",
"source": "cve@mitre.org"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/36232",
"source": "cve@mitre.org"
},
{
"url": "http://aluigi.altervista.org/adv/soldatdos-adv.txt",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://aluigi.org/poc/soldatdos.zip",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securityfocus.com/archive/1/477624/100/0/threaded",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securityfocus.com/bid/25426",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/36232",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "Soldat game server 1.4.2 and earlier, and dedicated server 2.6.2 and earlier, allows remote attackers to cause a denial of service (client lockout) via a series of UDP join packets from a spoofed IP address, which triggers temporary blacklisting of this IP address."
},
{
"lang": "es",
"value": "Soldat game server 1.4.2 y versiones anteriores, y dedicated server 2.6.2 y versiones anteriores, permite a atacantes remotos provocar una denegación de servicio (cierre de cliente) mediante series de paquetes UDP unidos desde una dirección IP suplantada, que dispara una censura temporal de lista negra de esta dirección IP."
}
],
"lastModified": "2026-06-16T22:44:16.440",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:michal_marcinkowski:soldat_dedicated_server:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "A17982A9-AB87-47C9-ACB9-087A66CD61AF",
"versionEndIncluding": "2.6.2"
},
{
"criteria": "cpe:2.3:a:michal_marcinkowski:soldat_game_server:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "C08010BD-8DE7-4EC0-8A65-66A5BF855063",
"versionEndIncluding": "1.4.2"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "cve@mitre.org"
}