Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.102018
Categoría:Buffer overflow
Título:CA ARCserve Backup Multiple Buffer Overflow Vulnerabilities
Resumen:Multiple stack-based buffer overflows in CA (Computer Associates); BrightStor ARCserve Backup for Laptops and Desktops r11.0 through r11.5 allow remote attackers to; execute arbitrary code via a long (1) username or (2) password to the rxrLogin command in rxRPC.dll,; or a long (3) username argument to the GetUserInfo function.
Descripción:Summary:
Multiple stack-based buffer overflows in CA (Computer Associates)
BrightStor ARCserve Backup for Laptops and Desktops r11.0 through r11.5 allow remote attackers to
execute arbitrary code via a long (1) username or (2) password to the rxrLogin command in rxRPC.dll,
or a long (3) username argument to the GetUserInfo function.

Solution:
The vendor released an advisory and updates to address these issues.
Please see the references for more information.

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2007-5003
BugTraq ID: 24348
http://www.securityfocus.com/bid/24348
Bugtraq: 20070921 [CAID 35673, 35674, 35675, 35676, 35677]: CA ARCserve Backup for Laptops and Desktops Multiple Server Vulnerabilities (Google Search)
http://www.securityfocus.com/archive/1/480252/100/100/threaded
eEye Security Advisory: 20070920 Multiple Vulnerabilities in CA ARCserve for Laptops & Desktops
http://research.eeye.com/html/advisories/published/AD20070920.html
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=599
http://www.securitytracker.com/id?1018728
http://secunia.com/advisories/25606
CopyrightCopyright (C) 2010 LSS

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.