CVE-2008-4399Improper Input Validation in Arcserve Backup

Severity
5.0MEDIUMNVD
EPSS
2.4%
top 15.00%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 14
Latest updateMay 2

Description

Unspecified vulnerability in the database engine service in asdbapi.dll in CA ARCserve Backup (formerly BrightStor ARCserve Backup) r11.1 through r12.0 allows remote attackers to cause a denial of service (crash) via a crafted request, related to "insufficient validation."

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Patches

🔴Vulnerability Details

2
GHSA
GHSA-q9h5-659q-3pg6: Unspecified vulnerability in the database engine service in asdbapi2022-05-02
CVEList
CVE-2008-4399: Unspecified vulnerability in the database engine service in asdbapi2008-10-14
CVE-2008-4399 — Improper Input Validation | cvebase