vendor:
BrightStor ARCserve Backup
by:
MC, patrick
N/A
CVSS
N/A
Buffer Overflow
119
CWE
Product Name: BrightStor ARCserve Backup
Affected Version From: r11.1
Affected Version To: r11.5
Patch Exists: YES
Related CWE: CVE-2006-6076
CPE: a:computer_associates:brightstor_arcserve_backup:11.1
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2006
CA BrightStor ARCserve Tape Engine Buffer Overflow
This module exploits a stack buffer overflow in Computer Associates BrightStor ARCserve Backup r11.1 - r11.5. By sending a specially crafted DCERPC request, an attacker could overflow the buffer and execute arbitrary code.
Mitigation:
CA has released a patch to address this vulnerability.