10
CVE-2007-0449
- EPSS 79.24%
- Veröffentlicht 23.01.2007 21:28:00
- Zuletzt bearbeitet 16.06.2026 22:35:35
- Erkennungen
Multiple buffer overflows in LGSERVER.EXE in CA BrightStor ARCserve Backup for Laptops and Desktops r11.0 through r11.1 SP1, Mobile Backup r4.0, Desktop and Business Protection Suite r2, and Desktop Management Suite (DMS) r11.0 and r11.1 allow remote attackers to execute arbitrary code via crafted packets to TCP port (1) 1900 or (2) 2200.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Broadcom ≫ Brightstor Arcserve Backup Laptops Desktops Version 11.0
Broadcom ≫ Brightstor Arcserve Backup Laptops Desktops Version 11.1
Broadcom ≫ Brightstor Arcserve Backup Laptops Desktops Version 11.1 Update sp1
Broadcom ≫ Brightstor Mobile Backup Version r4.0
Broadcom ≫ Business Protection Suite Version 2.0
Broadcom ≫ Desktop Management Suite Version 11.0
Broadcom ≫ Desktop Management Suite Version 11.1
Broadcom ≫ Desktop Protection Suite Version 2.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 79.24% | 0.996 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 10 | 10 | 10 |
AV:N/AC:L/Au:N/C:C/I:C/A:C
|
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer
The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.
http://secunia.com/advisories/23897
http://securitytracker.com/id?1017548
http://supportconnectw.ca.com/public/sams/lifeguard/infodocs/babldimpsec-notice.asp
http://www.kb.cert.org/vuls/id/357308
http://www.kb.cert.org/vuls/id/611276
http://www.osvdb.org/31593
http://www.securityfocus.com/archive/1/457945/30/8460/threaded
http://www.securityfocus.com/archive/1/458644/100/0/threaded
http://www.securityfocus.com/archive/1/458648/100/0/threaded
http://www.securityfocus.com/bid/22199
http://www.securityfocus.com/bid/22340
http://www.securityfocus.com/bid/22342
http://www.vupen.com/english/advisories/2007/0314
http://www3.ca.com/securityadvisor/newsinfo/collateral.aspx?cid=97696
http://www3.ca.com/securityadvisor/vulninfo/Vuln.aspx?ID=34993
https://exchange.xforce.ibmcloud.com/vulnerabilities/31704