7.8
CVSSv2

CVE-2007-2772

Published: 21/05/2007 Updated: 16/10/2018
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 790
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

(1) caloggerd.exe (camt70.dll) and (2) mediasvr.exe (catirpc.dll and rwxdr.dll) in CA BrightStor Backup 11.5.2.0 SP2 allow remote malicious users to cause a denial of service (NULL dereference and application crash) via a crafted RPC packet.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ca brightstor arcserve backup 11.5.2.0

Exploits

#!/usr/bin/python # # Computer Associates (CA) Brightstor Backup Mediasvrexe DoS (catirpcdll/rwxdrdll) # (Previously Unknown) # # There is an issue with RPC operation 126 and the imported cactirpcdll # and rwxdrdll It looks as if Mediasvrexe identifies a Bad Job Handle # as seen in its log file # # Log Message: # asms_manager_job_enumera ...
#!/usr/bin/python # # Computer Associates (CA) Brightstor Backup caloggderdexe DoS (camt70dll) # (Previously Unknown) # # There is an issue in camt70dll when caloggerd is processing a hostname for a login operation # When processing the string, if a null is passed in as an argument, it will be loaded into ESI # and then loaded into EDI in whic ...

Github Repositories

Exploit code

Exploits and Shellcode Exploit code by year/CVE 2006/CVE-2006-4868/vmlDoShtml 2007/CVE-2007-0816/catirpcdosrb 2007/CVE-2007-1785/camediasvrremotepy 2007/CVE-2007-2772/caloggerdospy 2007/CVE-2007-2772/camediasvrdospy Shellcode (by OS)