← All CVEs

CVE-2007-4620

high · 9

Multiple stack-based buffer overflows in Computer Associates (CA) Alert Notification Service (Alert.exe) 8.1.586.0, 8.0.450.0, and 7.1.758.0, as used in multiple CA products including Anti-Virus for the Enterprise 7.1 through r11.1 and Threat Manager for the Enterprise 8.1 and r8, allow remote authenticated users to execute arbitrary code via crafted RPC requests.

9
CVSS
52.3%
EPSS (exploit prob.)
99th
EPSS percentile
2008-04-07
Published

AV:N/AC:L/Au:S/C:C/I:C/A:C

Weaknesses

CWE-119

Affected products

VendorProductAffected versions
broadcomanti-virus_for_the_enterprise7.1
broadcomanti-virus_for_the_enterprise8
broadcomanti-virus_for_the_enterprise8.1
broadcombrightstor_arcserve_backup11.1
broadcombrightstor_arcserve_backup11.5
cabrightstor_arcserve_backup11
cathreat_manager_for_the_enterpriser8
cathreat_manager_for_the_enterpriser8.1

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2007-4620