Exploitation Summary
EIP tracks 2 public exploits for CVE-2005-1018.
PoCs published by Metasploit, hdm, including Metasploit module exploits/windows/brightstor/universal_agent.
AI-analyzed exploit summary This exploit targets a heap overflow vulnerability in CA BrightStor Universal Agent, leveraging a triple userland exception to achieve remote code execution via a crafted payload sent to port 6050.
Description
Buffer overflow in the UniversalAgent for Computer Associates (CA) BrightStor ARCserve Backup allows remote authenticated users to cause a denial of service or execute arbitrary code via an agent request to TCP port 6050 with a large argument before the option field.
Exploits (2)
This exploit targets a heap overflow vulnerability in CA BrightStor Universal Agent, leveraging a triple userland exception to achieve remote code execution via a crafted payload sent to port 6050.
This Metasploit module exploits a heap overflow in CA BrightStor Universal Agent (CVE-2005-1018) by sending multiple crafted TCP requests to grow the heap and execute shellcode via a dereferenced function pointer.