vendor:
CA BrightStor ARCserve Backup
by:
Krystian Kloskowski (h07)
9
CVSS
CRITICAL
Remote Buffer Overflow
119
CWE
Product Name: CA BrightStor ARCserve Backup
Affected Version From: CA BrightStor ARCserve Backup r11.5
Affected Version To: CA BrightStor ARCserve Backup r11.5
Patch Exists: NO
Related CWE:
CPE: a:ca:brightstor_arcserve_backup:11.5
Platforms Tested: Windows XP SP2 Polish with Internet Explorer 6
CA BrightStor ARCserve Backup r11.5 AddColumn() 0day ActiveX Remote Buffer Overflow Exploit
This exploit targets CA BrightStor ARCserve Backup r11.5 by exploiting a buffer overflow vulnerability in the AddColumn() function of the ListCtrl.ocx ActiveX control. By sending a specially crafted request, an attacker can trigger a remote buffer overflow and execute arbitrary code on the target system.
Mitigation:
To mitigate this vulnerability, it is recommended to apply the latest patches and updates provided by CA Technologies. Additionally, users should exercise caution when accessing untrusted websites or opening suspicious email attachments.