CVE-2007-5006

Severity
10.0CRITICAL
EPSS
1.8%
top 17.28%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 1
Latest updateMay 1

Description

Multiple command handlers in CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r11.0 through r11.5 do not verify if a peer is authenticated, which allows remote attackers to add and delete users, and start client restores.

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 10.0 | Impact: 10.0

Affected Packages3 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-f3fm-5grc-52pj: Multiple command handlers in CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r112022-05-01
CVEList
CVE-2007-5006: Multiple command handlers in CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r112007-10-01
CVE-2007-5006 (CRITICAL CVSS 10) | Multiple command handlers in CA (Co | cvebase.io