CVE-2008-0708 describes the presence of the W32.Fakerecy and W32.SillyFDC worms on specific HP USB 2.0 Floppy Drive Key product options (442084-B21 and 442085-B21) intended for certain HP ProLiant servers. The worms could be launched if the server lacked up-to-date detection. With a CVSS score of 4.6 (AV:L/AC:L/Au:N/C:P/I:P/A:P), this vulnerability requires local access and low attack complexity, potentially leading to partial compromise of confidentiality, integrity, and availability. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or KEV listing, though it has received a notable amount of community discussion.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:h:hp:442084-b21:*:*:*:*:*:*:*:* | ||
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:h:hp:442085-b21:*:*:*:*:*:*:*:* | ||
bl20pg4CPE matchmatch criteria | cpe:2.3:h:hp:proliant:bl20pg4:*:*:*:*:*:*:* | ||
bl25pg2CPE matchmatch criteria | cpe:2.3:h:hp:proliant:bl25pg2:*:*:*:*:*:*:* | ||
bl45pg2CPE matchmatch criteria | cpe:2.3:h:hp:proliant:bl45pg2:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:L/Au:N/C:P/I:P/A:P
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.