Unrated severityNVD Advisory· Published Apr 10, 2007· Updated Apr 23, 2026
CVE-2007-1917
CVE-2007-1917
Description
Buffer overflow in the SYSTEM_CREATE_INSTANCE function in the SAP RFC Library 6.40 and 7.00 before 20061211 allows remote attackers to execute arbitrary code via unspecified vectors. NOTE: This information is based upon a vague initial disclosure. Details will be updated after the grace period has ended.
Affected products
2cpe:2.3:a:sap:rfc_library:6.4:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:sap:rfc_library:6.4:*:*:*:*:*:*:*
- cpe:2.3:a:sap:rfc_library:7.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- secunia.com/advisories/24722nvdVendor Advisory
- securityreason.com/securityalert/2536nvd
- www.cybsec.com/vuln/CYBSEC-Security_Advisory_SAP_SYSTEM_CREATE_INSTANCE_RFC_Function_Buffer_Overflow.pdfnvd
- www.securityfocus.com/archive/1/464683/100/0/threadednvd
- www.securityfocus.com/bid/23307nvd
- www.vupen.com/english/advisories/2007/1270nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/33416nvd
News mentions
0No linked articles in our index yet.