PoC Index

CVE-2008-4397

HIGH 10.0EPSS 80.5%

Directory traversal vulnerability in the RPC interface (asdbapi.dll) in CA ARCserve Backup (formerly BrightStor ARCserve Backup) r11.1 through r12.0 allows remote attackers to execute arbitrary commands via a .. (dot dot) in an RPC call with opnum 0x10A.

CVSS v2.0
10.0 HIGHAV:N/AC:L/Au:N/C:C/I:C/A:C
EPSS
80.54% chance of exploitation in the next 30 days, 100th percentile
Published
2008-10-14
Updated
2024-08-07

Metasploit modules (1)

ExploitDB entries (1)

References

Related