CVE-2006-6917
BrightStor ARCserve Backup R11.5 - Remote Code Execution via Tape Engine RPC Request
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-6917. PoCs published by Winny Thomas.
AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in CA BrightStor Arcserve's tapeeng.exe service via a malformed RPC request. It binds a shell to TCP port 4443 on the target system.
Description
Multiple buffer overflows in Computer Associates (CA) BrightStor ARCserve Backup R11.5 Server before SP2 allows remote attackers to execute arbitrary code in the Tape Engine (tapeeng.exe) via a crafted RPC request with (1) opnum 38, which is not properly handled in TAPEUTIL.dll 11.5.3884.0, or (2) opnum 37, which is not properly handled in TAPEENG.dll 11.5.3884.0.
Exploits (1)
This exploit targets a buffer overflow vulnerability in CA BrightStor Arcserve's tapeeng.exe service via a malformed RPC request. It binds a shell to TCP port 4443 on the target system.