Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Brightstor_enterprise_backup
(Broadcom)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 19 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2007-10-13 | CVE-2007-5328 | The Message Engine RPC service in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, allows attackers to execute arbitrary code by using certain "insecure method calls" to modify the file system and registry, aka "Privileged function exposure." | Brightstor_arcserve_backup, Brightstor_enterprise_backup | N/A | ||
2007-10-13 | CVE-2007-5327 | Stack-based buffer overflow in the RPC interface for the Message Engine (mediasvr.exe) in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, allows remote attackers to execute arbitrary code via a long argument in the 0x10d opnum. | Brightstor_arcserve_backup, Brightstor_enterprise_backup | N/A | ||
2007-10-13 | CVE-2007-5325 | Multiple buffer overflows in (1) the Message Engine and (2) AScore.dll in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, allow remote attackers to execute arbitrary code via unspecified vectors. | Brightstor_arcserve_backup, Brightstor_enterprise_backup | N/A | ||
2007-07-18 | CVE-2007-3825 | Multiple stack-based buffer overflows in the RPC implementation in alert.exe before 8.0.255.0 in CA (formerly Computer Associates) Alert Notification Server, as used in Threat Manager for the Enterprise, Protection Suites, certain BrightStor ARCserve products, and BrightStor Enterprise Backup, allow remote attackers to execute arbitrary code by sending certain data to unspecified RPC procedures. | Alert_notification_server, Brightstor_arcserve_backup, Brightstor_enterprise_backup, Anti\-Virus_for_the_enterprise, Brightstor_arcserve_backup, Brightstor_arcserve_client, Protection_suites, Threat_manager | N/A | ||
2007-01-11 | CVE-2007-0168 | The Tape Engine service in Computer Associates (CA) BrightStor ARCserve Backup 9.01 through 11.5, Enterprise Backup 10.5, and CA Server/Business Protection Suite r2 allows remote attackers to execute arbitrary code via certain data in opnum 0xBF in an RPC request, which is directly executed. | Brightstor_arcserve_backup, Brightstor_enterprise_backup, Business_protection_suite | N/A | ||
2007-01-11 | CVE-2007-0169 | Multiple buffer overflows in Computer Associates (CA) BrightStor ARCserve Backup 9.01 through 11.5, Enterprise Backup 10.5, and CA Server/Business Protection Suite r2 allow remote attackers to execute arbitrary code via RPC requests with crafted data for opnums (1) 0x2F and (2) 0x75 in the (a) Message Engine RPC service, or opnum (3) 0xCF in the Tape Engine service. | Brightstor_arcserve_backup, Brightstor_enterprise_backup, Business_protection_suite | N/A | ||
2005-08-05 | CVE-2005-1272 | Stack-based buffer overflow in the Backup Agent for Microsoft SQL Server in BrightStor ARCserve Backup Agent for SQL Server 11.0 allows remote attackers to execute arbitrary code via a long string sent to port (1) 6070 or (2) 6050. | Brightstor_enterprise_backup, Brightstor_arcserve_backup, Brightstor_arcserve_backup_agent, Brightstor_enterprise_backup_agent | N/A | ||
2007-01-16 | CVE-2006-5172 | Stack-based buffer overflow in the RPC interface in Mediasvr.exe in Computer Associates (CA) Brightstor ARCserve Backup 9.01 through 11.5, Enterprise Backup 10.5, and CA Protection Suites r2 allows remote attackers to execute arbitrary code via crafted SUNRPC packets, aka the "Mediasvr.exe String Handling Overflow," a different vulnerability than CVE-2006-5171. | Brightstor_arcserve_backup, Brightstor_enterprise_backup, Protection_suites | N/A | ||
2007-01-16 | CVE-2006-5171 | Stack-based buffer overflow in the RPC interface in Mediasvr.exe in Computer Associates (CA) Brightstor ARCserve Backup 9.01 through 11.5, Enterprise Backup 10.5, and CA Protection Suites r2 allows remote attackers to execute arbitrary code via crafted SUNRPC packets, aka the "Mediasvr.exe Overflow," a different vulnerability than CVE-2006-5172. | Brightstor_arcserve_backup, Brightstor_enterprise_backup, Protection_suites | N/A |