Directory traversal vulnerability in the RPC interface (asdbapi.dll) in CA ARCserve Backup (formerly BrightStor ARCserve Backup) r11.1 through r12.0 allows remote attackers to execute arbitrary commands via a .. (dot dot) in an RPC call with opnum 0x10A.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 00:51
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/32220 - Vendor Advisory | |
References | () http://securityreason.com/securityalert/4412 - | |
References | () http://www.securityfocus.com/archive/1/497218 - | |
References | () http://www.securityfocus.com/archive/1/497281/100/0/threaded - | |
References | () http://www.securityfocus.com/bid/31684 - | |
References | () http://www.securitytracker.com/id?1021032 - | |
References | () http://www.vupen.com/english/advisories/2008/2777 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/45774 - | |
References | () https://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=188143 - Patch, Vendor Advisory |
Information
Published : 2008-10-14 21:10
Updated : 2024-11-21 00:51
NVD link : CVE-2008-4397
Mitre link : CVE-2008-4397
CVE.ORG link : CVE-2008-4397
JSON object : View
Products Affected
broadcom
- arcserve_backup
- server_protection_suite
- business_protection_suite
ca
- business_protection_suite
- arcserve_backup