HIGH · 10.0

CVE-2008-5415

The LDBserver service in the server in CA ARCserve Backup 11.1 through 12.0 on Windows allows remote attackers to execute arbitrary code via a handle_t argument to an RPC endpoint in which the argumen...

Vulnerability Description

The LDBserver service in the server in CA ARCserve Backup 11.1 through 12.0 on Windows allows remote attackers to execute arbitrary code via a handle_t argument to an RPC endpoint in which the argument refers to an incompatible procedure.

CVSS Score

10.0

HIGH

AV:N/AC:L/Au:N/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
BroadcomArcserve Backupr12.0
CaArcserve Backupr11.1
MicrosoftWindowsAll versions

References

FAQ

What is CVE-2008-5415?

CVE-2008-5415 is a vulnerability with a CVSS score of 10.0 (HIGH). The LDBserver service in the server in CA ARCserve Backup 11.1 through 12.0 on Windows allows remote attackers to execute arbitrary code via a handle_t argument to an RPC endpoint in which the argumen...

How severe is CVE-2008-5415?

CVE-2008-5415 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2008-5415?

Check the references section above for vendor advisories and patch information. Affected products include: Broadcom Arcserve Backup, Ca Arcserve Backup, Microsoft Windows.