VDB

CVE-2007-0169

CVE-2007-0169 PUBLISHED CVSS 7.5 HIGH

Multiple buffer overflows in Computer Associates (CA) BrightStor ARCserve Backup 9.01 through 11.5, Enterprise Backup 10.5, and CA Server/Business Protection Suite r2 allow remote attackers to execute arbitrary code via RPC requests with crafted data for opnums (1) 0x2F and (2) 0x75 in the (a) Message Engine RPC service, or opnum (3) 0xCF in the Tape Engine service.

EPSS 77.82% · 99.0th percentile

Risk Scores

CVSS 2.0
7.5
EPSS Score
77.82%
99.0th percentile

Affected Products

VendorProductVersions
broadcombusiness_protection_suite2.0
n/an/an/a
broadcombrightstor_enterprise_backup10.5
broadcombrightstor_arcserve_backup0, 9.01

Timeline

  • Jan 11, 2007 CVE Published
  • Apr 30, 2010 PoC Published
  • May 29, 2018 PoC Published
  • Feb 4, 2022 EPSS Score
  • Mar 29, 2022 EPSS Score
  • Jul 12, 2022 EPSS Score
  • Sep 4, 2022 EPSS Score
  • Dec 18, 2022 EPSS Score
  • Feb 9, 2023 EPSS Score
  • Apr 3, 2023 EPSS Score
  • May 8, 2023 EPSS Score
  • Jun 15, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›