Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2954-hh3h-2236

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Queue.dll for the message queuing service (LQserver.exe) in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, allows remote attackers to execute arbitrary code via a malformed ONRPC protocol request for operation 0x76, which causes ARCserve Backup to dereference arbitrary pointers.

Queue.dll for the message queuing service (LQserver.exe) in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, allows remote attackers to execute arbitrary code via a malformed ONRPC protocol request for operation 0x76, which causes ARCserve Backup to dereference arbitrary pointers.

EPSS

Процентиль: 95%
0.18132
Средний

Дефекты

CWE-94

Связанные уязвимости

nvd
около 18 лет назад

Queue.dll for the message queuing service (LQserver.exe) in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, allows remote attackers to execute arbitrary code via a malformed ONRPC protocol request for operation 0x76, which causes ARCserve Backup to dereference arbitrary pointers.

EPSS

Процентиль: 95%
0.18132
Средний

Дефекты

CWE-94