CVE-2005-2535

Broadcom Arcserve Backup 2000 - Buffer Overflow

Title source: rule

Description

Buffer overflow in the Discovery Service in BrightStor ARCserve Backup 9.0 through 11.1 allows remote attackers to execute arbitrary commands via a large packet to TCP port 41523, a different vulnerability than CVE-2005-0260.

Exploits (3)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/16408
exploitdb WORKING POC VERIFIED
by cybertronic · cdoslinux
https://www.exploit-db.com/exploits/815
metasploit WORKING POC NORMAL
by hdm, aushack · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/brightstor/discovery_tcp.rb

Scores

EPSS 0.8294
EPSS Percentile 99.3%

Details

Status published
Products (10)
broadcom/arcserve_backup_2000 r16.5
broadcom/brightstor_arcserve_backup 7.0
broadcom/brightstor_arcserve_backup 9.0 (3 CPE variants)
broadcom/brightstor_arcserve_backup 9.0.1
broadcom/brightstor_arcserve_backup 11.0
broadcom/brightstor_arcserve_backup 11.1 (7 CPE variants)
broadcom/brightstor_arcserve_backup_hp 11.1
broadcom/brightstor_enterprise_backup 10
broadcom/brightstor_enterprise_backup 10.0 (4 CPE variants)
broadcom/brightstor_enterprise_backup 10.5 (6 CPE variants)
Published Aug 10, 2005
Tracked Since Feb 18, 2026