CVE-2007-0168
BrightStor ARCserve Backup 9.01-11.5 - Remote Code Execution via Tape Engine RPC Opnum 0xBF
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-0168. PoCs published by Tenable NS.
AI-analyzed exploit summary This exploit targets a remote buffer overflow vulnerability in Computer Associates BrightStor ARCserve Backup. It sends maliciously crafted packets to trigger the overflow and execute arbitrary shellcode, potentially leading to remote code execution with SYSTEM privileges.
Description
The Tape Engine service in Computer Associates (CA) BrightStor ARCserve Backup 9.01 through 11.5, Enterprise Backup 10.5, and CA Server/Business Protection Suite r2 allows remote attackers to execute arbitrary code via certain data in opnum 0xBF in an RPC request, which is directly executed.
Exploits (1)
This exploit targets a remote buffer overflow vulnerability in Computer Associates BrightStor ARCserve Backup. It sends maliciously crafted packets to trigger the overflow and execute arbitrary shellcode, potentially leading to remote code execution with SYSTEM privileges.