← All CVEs

CVE-2007-3825

high · 9.3

Multiple stack-based buffer overflows in the RPC implementation in alert.exe before 8.0.255.0 in CA (formerly Computer Associates) Alert Notification Server, as used in Threat Manager for the Enterprise, Protection Suites, certain BrightStor ARCserve products, and BrightStor Enterprise Backup, allow remote attackers to execute arbitrary code by sending certain data to unspecified RPC procedures.

9.3
CVSS
14.0%
EPSS (exploit prob.)
96th
EPSS percentile
2007-07-18
Published

AV:N/AC:M/Au:N/C:C/I:C/A:C

Affected products

VendorProductAffected versions
broadcomalert_notification_serverall versions
broadcombrightstor_arcserve_backup9.01
broadcombrightstor_arcserve_backup11.1
broadcombrightstor_arcserve_backup11.5
broadcombrightstor_enterprise_backup10.5
caanti-virus_for_the_enterprise8
cabrightstor_arcserve_backup11
cabrightstor_arcserve_clientall versions
caprotection_suitesr3
cathreat_manager8

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2007-3825