CVE-2006-5171
high · 10Stack-based buffer overflow in the RPC interface in Mediasvr.exe in Computer Associates (CA) Brightstor ARCserve Backup 9.01 through 11.5, Enterprise Backup 10.5, and CA Protection Suites r2 allows remote attackers to execute arbitrary code via crafted SUNRPC packets, aka the "Mediasvr.exe Overflow," a different vulnerability than CVE-2006-5172.
10
CVSS
16.5%
EPSS (exploit prob.)
97th
EPSS percentile
2007-01-16
Published
AV:N/AC:L/Au:N/C:C/I:C/A:C
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| broadcom | brightstor_arcserve_backup | <= 11.5 |
| broadcom | brightstor_arcserve_backup | 9.01 |
| broadcom | brightstor_enterprise_backup | 10.5 |
| ca | protection_suites | r2 |
Check a specific version with /api/v1/cve/match.
References
- http://osvdb.org/31319
- http://secunia.com/advisories/23648
- http://securitytracker.com/id?1017506
- http://supportconnectw.ca.com/public/storage/infodocs/babimpsec-notice.asp
- http://www.iss.net/threats/252.html
- http://www.securityfocus.com/archive/1/456711
- http://www.securityfocus.com/bid/22015
- http://www.vupen.com/english/advisories/2007/0154
- https://exchange.xforce.ibmcloud.com/vulnerabilities/29343
- http://osvdb.org/31319
- http://secunia.com/advisories/23648
- http://securitytracker.com/id?1017506
- http://supportconnectw.ca.com/public/storage/infodocs/babimpsec-notice.asp
- http://www.iss.net/threats/252.html
- http://www.securityfocus.com/archive/1/456711
- http://www.securityfocus.com/bid/22015
- http://www.vupen.com/english/advisories/2007/0154
- https://exchange.xforce.ibmcloud.com/vulnerabilities/29343
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2006-5171