CVE Database
/

CVE-2008-4397

Back to search

CVE-2008-4397

Published: Oct 14, 2008

Modified: Aug 7, 2024

PUBLISHED

Description

Directory traversal vulnerability in the RPC interface (asdbapi.dll) in CA ARCserve Backup (formerly BrightStor ARCserve Backup) r11.1 through r12.0 allows remote attackers to execute arbitrary commands via a .. (dot dot) in an RPC call with opnum 0x10A.

VendorProductVersions

n/a

n/a

affected
n/a

References

31684
vdb-entry
x_refsource_BID
ADV-2008-2777
vdb-entry
x_refsource_VUPEN
1021032
vdb-entry
x_refsource_SECTRACK
32220
third-party-advisory
x_refsource_SECUNIA
4412
third-party-advisory
x_refsource_SREASON

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now