CVE-2006-6076

Broadcom Brightstor Arcserve Backup < 11.5 - Buffer Overflow

Title source: rule

Description

Buffer overflow in the Tape Engine (tapeeng.exe) in CA (formerly Computer Associates) BrightStor ARCserve Backup 11.5 and earlier allows remote attackers to execute arbitrary code via certain RPC requests to TCP port 6502.

Exploits (3)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/16407
metasploit WORKING POC NORMAL
by MC · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/brightstor/tape_engine_0x8a.rb
metasploit WORKING POC NORMAL
by MC, aushack · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/brightstor/tape_engine.rb

Scores

EPSS 0.7887
EPSS Percentile 99.1%

Details

Status published
Products (7)
broadcom/brightstor_arcserve_backup 11.1
broadcom/brightstor_arcserve_backup 11.5 sp1
broadcom/brightstor_arcserve_backup < 11.5
ca/brightstor_arcserve_backup 11
ca/brightstor_arcserve_backup 11.1
ca/brightstor_arcserve_backup_agent 11.0
ca/brightstor_arcserve_backup_agent 11.1
Published Nov 24, 2006
Tracked Since Feb 18, 2026