CVE-2007-5726
Status: ModifiedMedium (6.8)—
Unspecified vulnerability in the Stream Control Transmission Protocol (sctp) functionality in Sun Solaris 10, when at least one SCTP socket is in the LISTEN state, allows remote attackers to cause a denial of service (panic) via unspecified vectors related to "INIT processing."
CVSS
- Version: 2.0
- Vector: AV:N/AC:L/Au:S/C:N/I:N/A:C
- Base score: 6.8
Exploitation probability (EPSS)
- Probability of exploitation in the next 30 days: 2.31%
- Percentile among all scored CVEs: 83
- Score date: 10/8/2026
EPSS (Exploit Prediction Scoring System, FIRST) estimates how likely a vulnerability is to be exploited in the wild within 30 days. It complements CVSS (impact) and CISA KEV (confirmed exploitation).
Affected technologies (1)
CWEs
- NVD-CWE-noinfo
References
- http://osvdb.org/40815
- http://secunia.com/advisories/27428
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-103101-1
- http://sunsolve.sun.com/search/document.do?assetkey=1-66-201252-1
- http://www.securityfocus.com/bid/26224
- http://www.securitytracker.com/id?1018867
- http://www.vupen.com/english/advisories/2007/3633
- https://exchange.xforce.ibmcloud.com/vulnerabilities/38126
- http://osvdb.org/40815
- http://secunia.com/advisories/27428
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-103101-1
- http://sunsolve.sun.com/search/document.do?assetkey=1-66-201252-1
- http://www.securityfocus.com/bid/26224
- http://www.securitytracker.com/id?1018867
- http://www.vupen.com/english/advisories/2007/3633
- https://exchange.xforce.ibmcloud.com/vulnerabilities/38126
Raw JSON (NVD)
Show
{
"id": "CVE-2007-5726",
"cveTags": [],
"metrics": {
"cvssMetricV2": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"version": "2.0",
"baseScore": 6.8,
"accessVector": "NETWORK",
"vectorString": "AV:N/AC:L/Au:S/C:N/I:N/A:C",
"authentication": "SINGLE",
"integrityImpact": "NONE",
"accessComplexity": "LOW",
"availabilityImpact": "COMPLETE",
"confidentialityImpact": "NONE"
},
"acInsufInfo": false,
"impactScore": 6.9,
"baseSeverity": "MEDIUM",
"obtainAllPrivilege": false,
"exploitabilityScore": 8,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"affected": [
{
"source": "cve@mitre.org",
"affectedData": [
{
"vendor": "n/a",
"product": "n/a",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
]
}
],
"published": "2007-10-30T21:46:00.000",
"references": [
{
"url": "http://osvdb.org/40815",
"source": "cve@mitre.org"
},
{
"url": "http://secunia.com/advisories/27428",
"source": "cve@mitre.org"
},
{
"url": "http://sunsolve.sun.com/search/document.do?assetkey=1-26-103101-1",
"tags": [
"Patch"
],
"source": "cve@mitre.org"
},
{
"url": "http://sunsolve.sun.com/search/document.do?assetkey=1-66-201252-1",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/bid/26224",
"source": "cve@mitre.org"
},
{
"url": "http://www.securitytracker.com/id?1018867",
"source": "cve@mitre.org"
},
{
"url": "http://www.vupen.com/english/advisories/2007/3633",
"source": "cve@mitre.org"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/38126",
"source": "cve@mitre.org"
},
{
"url": "http://osvdb.org/40815",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://secunia.com/advisories/27428",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://sunsolve.sun.com/search/document.do?assetkey=1-26-103101-1",
"tags": [
"Patch"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://sunsolve.sun.com/search/document.do?assetkey=1-66-201252-1",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securityfocus.com/bid/26224",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securitytracker.com/id?1018867",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.vupen.com/english/advisories/2007/3633",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/38126",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "NVD-CWE-noinfo"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "Unspecified vulnerability in the Stream Control Transmission Protocol (sctp) functionality in Sun Solaris 10, when at least one SCTP socket is in the LISTEN state, allows remote attackers to cause a denial of service (panic) via unspecified vectors related to \"INIT processing.\""
},
{
"lang": "es",
"value": "Vulnerabilidad no especificada en la funcionalidad Stream Control Transmission Protocol (sctp) de Sun Solaris 10, cuando al menos uno de los socket SCTP se encuentra en modo LISTEN, permite a atacantes remotos provocar una denegación de servicio (pánico) mediante vectores no especificados relativos a \r\n\"INIT processing.\""
}
],
"lastModified": "2026-06-16T22:46:42.697",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:sun:solaris:10.0:*:sparc:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "7BF232A9-9E0A-481E-918D-65FC82EF36D8"
},
{
"criteria": "cpe:2.3:o:sun:solaris:10.0:unkown:x86:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "B76A8BD4-E53F-49A6-946B-6E672DD0419C"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "cve@mitre.org"
}