Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Brightstor_arcserve_backup
(Broadcom)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 41 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2008-04-27 | CVE-2008-1979 | The Discovery Service (casdscvc) in CA ARCserve Backup 12.0.5454.0 and earlier allows remote attackers to cause a denial of service (crash) via a packet with a large integer value used in an increment to TCP port 41523, which triggers a buffer over-read. | Brightstor_arcserve_backup | N/A | ||
2007-03-31 | CVE-2007-1785 | The RPC service in mediasvr.exe in CA BrightStor ARCserve Backup 11.5 SP2 build 4237 allows remote attackers to execute arbitrary code via crafted xdr_handle_t data in RPC packets, which is used in calculating an address for a function call, as demonstrated using the 191 (0xbf) RPC request. | Brightstor_arcserve_backup, Brightstor_arcserve_backup | N/A | ||
2007-10-13 | CVE-2007-5332 | Multiple unspecified vulnerabilities in (1) mediasvr and (2) caloggerd in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, have unknown impact and attack vectors related to memory corruption. | Brightstor_arcserve_backup, Brightstor_enterprise_backup | N/A | ||
2007-10-13 | CVE-2007-5330 | The cadbd RPC service in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, allows remote attackers to (1) execute arbitrary code via stack-based buffer overflows in unspecified RPC procedures, and (2) trigger memory corruption related to the use of "handle" RPC arguments as pointers. | Brightstor_arcserve_backup, Brightstor_enterprise_backup | N/A | ||
2007-10-13 | CVE-2007-5328 | The Message Engine RPC service in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, allows attackers to execute arbitrary code by using certain "insecure method calls" to modify the file system and registry, aka "Privileged function exposure." | Brightstor_arcserve_backup, Brightstor_enterprise_backup | N/A | ||
2007-10-13 | CVE-2007-5327 | Stack-based buffer overflow in the RPC interface for the Message Engine (mediasvr.exe) in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, allows remote attackers to execute arbitrary code via a long argument in the 0x10d opnum. | Brightstor_arcserve_backup, Brightstor_enterprise_backup | N/A | ||
2007-10-13 | CVE-2007-5325 | Multiple buffer overflows in (1) the Message Engine and (2) AScore.dll in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, allow remote attackers to execute arbitrary code via unspecified vectors. | Brightstor_arcserve_backup, Brightstor_enterprise_backup | N/A | ||
2008-04-07 | CVE-2007-4620 | Multiple stack-based buffer overflows in Computer Associates (CA) Alert Notification Service (Alert.exe) 8.1.586.0, 8.0.450.0, and 7.1.758.0, as used in multiple CA products including Anti-Virus for the Enterprise 7.1 through r11.1 and Threat Manager for the Enterprise 8.1 and r8, allow remote authenticated users to execute arbitrary code via crafted RPC requests. | Anti\-Virus_for_the_enterprise, Brightstor_arcserve_backup, Brightstor_arcserve_backup, Threat_manager_for_the_enterprise | N/A | ||
2007-07-18 | CVE-2007-3825 | Multiple stack-based buffer overflows in the RPC implementation in alert.exe before 8.0.255.0 in CA (formerly Computer Associates) Alert Notification Server, as used in Threat Manager for the Enterprise, Protection Suites, certain BrightStor ARCserve products, and BrightStor Enterprise Backup, allow remote attackers to execute arbitrary code by sending certain data to unspecified RPC procedures. | Alert_notification_server, Brightstor_arcserve_backup, Brightstor_enterprise_backup, Anti\-Virus_for_the_enterprise, Brightstor_arcserve_backup, Brightstor_arcserve_client, Protection_suites, Threat_manager | N/A | ||
2007-03-16 | CVE-2007-1448 | The Tape Engine in CA (formerly Computer Associates) BrightStor ARCserve Backup 11.5 and earlier allows remote attackers to cause a denial of service (disabled interface) by calling an unspecified RPC function. | Brightstor_arcserve_backup | N/A |