CVE-2008-4397
CA ARCserve Backup r11.1-r12.0 - Remote Command Execution via RPC Interface
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2008-4397.
PoCs published by Metasploit, Nahuel Cayento Riva, MC, including Metasploit module exploits/windows/brightstor/ca_arcserve_342.
AI-analyzed exploit summary This Metasploit module exploits a buffer overflow in Computer Associates BrighStor ARCserve r11.5 (build 3884) via a crafted RPC request to opcode 0x342, allowing arbitrary code execution. It includes SEH-based payload delivery and requires the target's NetBios hostname.
Description
Directory traversal vulnerability in the RPC interface (asdbapi.dll) in CA ARCserve Backup (formerly BrightStor ARCserve Backup) r11.1 through r12.0 allows remote attackers to execute arbitrary commands via a .. (dot dot) in an RPC call with opnum 0x10A.
Exploits (2)
This Metasploit module exploits a buffer overflow in Computer Associates BrighStor ARCserve r11.5 (build 3884) via a crafted RPC request to opcode 0x342, allowing arbitrary code execution. It includes SEH-based payload delivery and requires the target's NetBios hostname.
This Metasploit module exploits a buffer overflow in Computer Associates BrightStor ARCserve r11.5 via a crafted RPC request to opcode 0x342, allowing arbitrary code execution. It uses SEH overwrites and a custom payload to achieve remote code execution.