Lucene search

K
cveMitreCVE-2007-5327
HistoryOct 13, 2007 - 12:17 a.m.

CVE-2007-5327

2007-10-1300:17:00
CWE-119
mitre
web.nvd.nist.gov
28
ca brightstor
arcserve backup
buffer overflow
rpc interface
cve-2007-5327
nvd
security vulnerability

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.7

Confidence

Low

EPSS

0.91

Percentile

98.9%

Stack-based buffer overflow in the RPC interface for the Message Engine (mediasvr.exe) in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, allows remote attackers to execute arbitrary code via a long argument in the 0x10d opnum.

Affected configurations

Nvd
Node
broadcombrightstor_arcserve_backupMatch9.01
OR
broadcombrightstor_arcserve_backupMatch10.5
OR
broadcombrightstor_arcserve_backupMatch11
OR
broadcombrightstor_arcserve_backupMatch11.1
OR
broadcombrightstor_arcserve_backupMatch11.5
OR
broadcombrightstor_enterprise_backupMatch10.5
VendorProductVersionCPE
broadcombrightstor_arcserve_backup9.01cpe:2.3:a:broadcom:brightstor_arcserve_backup:9.01:*:*:*:*:*:*:*
broadcombrightstor_arcserve_backup10.5cpe:2.3:a:broadcom:brightstor_arcserve_backup:10.5:*:*:*:*:*:*:*
broadcombrightstor_arcserve_backup11cpe:2.3:a:broadcom:brightstor_arcserve_backup:11:*:*:*:*:*:*:*
broadcombrightstor_arcserve_backup11.1cpe:2.3:a:broadcom:brightstor_arcserve_backup:11.1:*:*:*:*:*:*:*
broadcombrightstor_arcserve_backup11.5cpe:2.3:a:broadcom:brightstor_arcserve_backup:11.5:*:*:*:*:*:*:*
broadcombrightstor_enterprise_backup10.5cpe:2.3:a:broadcom:brightstor_enterprise_backup:10.5:*:*:*:*:*:*:*

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.7

Confidence

Low

EPSS

0.91

Percentile

98.9%