CVE-2007-5330

Severity
10.0CRITICAL
EPSS
25.0%
top 3.83%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 13
Latest updateMay 1

Description

The cadbd RPC service in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, allows remote attackers to (1) execute arbitrary code via stack-based buffer overflows in unspecified RPC procedures, and (2) trigger memory corruption related to the use of "handle" RPC arguments as pointers.

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 10.0 | Impact: 10.0

Affected Packages2 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-42gq-297f-29c4: The cadbd RPC service in CA BrightStor ARCServe BackUp v92022-05-01
CVEList
CVE-2007-5330: The cadbd RPC service in CA BrightStor ARCServe BackUp v92007-10-13

💥Exploits & PoCs

1
Exploit-DB
Apache Tomcat Connector jk2-2.0.2 mod_jk2 - Remote Overflow2008-04-06