Entreprise d'experts en Sécurité Informatique : Audits et conseils en cybersécurité
Entreprise française de cybersécurité depuis 2004
☎ 03 60 47 09 81 - info@securiteinfo.com


CVE-2012-2972

Description

The (1) server and (2) agent components in CA ARCserve Backup r12.5, r15, and r16 on Windows do not properly validate RPC requests, which allows remote attackers to cause a denial of service (service crash) via a crafted request.

POC

Reference

- http://packetstormsecurity.com/files/119543/Security-Notice-For-CA-ARCserve-Backup.html

- http://www.kb.cert.org/vuls/id/408099

Github

No PoCs found on GitHub currently.