Entreprise d'experts en Sécurité Informatique : Audits et conseils en cybersécurité
Entreprise française de cybersécurité depuis 2004
☎ 03 60 47 09 81 - info@securiteinfo.com


CVE-2008-5415

Description

The LDBserver service in the server in CA ARCserve Backup 11.1 through 12.0 on Windows allows remote attackers to execute arbitrary code via a handle_t argument to an RPC endpoint in which the argument refers to an incompatible procedure.

POC

Reference

- http://community.ca.com/blogs/casecurityresponseblog/archive/2008/12/10.aspx

- http://securityreason.com/securityalert/4708

Github

No PoCs found on GitHub currently.