Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2704▼ 598 respecto a la semana anterior
Críticas / altas1288▼ 199 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)299▼ 211 respecto a la semana anterior
57 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (10) | 14% | — | Broadcom Brightstor Arcserve BackupBroadcom Desktop Management SuiteCA Arcserve Backup FOR Laptops AND DesktopsCA Brightstor Arcserve Backup+1 | 1/8/2008 | 16/6/2026 | Integer underflow in rxRPC.dll in the LGServer service in the server in CA ARCserve Backup for Laptops and Desktops 11.0 through 11.5 allows remote attackers to execute arbitrary code or cause a denial of service via a crafted message that triggers a buffer overflow. | |
| Modificada | Alta (7.5) | 15% | — | Broadcom Brightstor Arcserve BackupCA Brightstor Arcserve Backup | 21/5/2008 | 16/6/2026 | Multiple buffer overflows in xdr functions in the server in CA BrightStor ARCServe Backup 11.0, 11.1, and 11.5 allow remote attackers to execute arbitrary code, as demonstrated by a stack-based buffer overflow via a long parameter to the xdr_rwsstring function. | |
| Modificada | Alta (10) | 12% | — | Broadcom Brightstor Arcserve BackupBroadcom Server Protection SuiteCA Brightstor Arcserve BackupCA Business Protection Suite | 21/5/2008 | 16/6/2026 | Directory traversal vulnerability in caloggerd in CA BrightStor ARCServe Backup 11.0, 11.1, and 11.5 allows remote attackers to append arbitrary data to arbitrary files via directory traversal sequences in unspecified input fields, which are used in log messages. NOTE: this can be leveraged for code execution in many… | |
| Modificada | Media (5) | 3.6% | 💥 Exploit | Broadcom Brightstor Arcserve Backup | 27/4/2008 | 16/6/2026 | The Discovery Service (casdscvc) in CA ARCserve Backup 12.0.5454.0 and earlier allows remote attackers to cause a denial of service (crash) via a packet with a large integer value used in an increment to TCP port 41523, which triggers a buffer over-read. | |
| Modificada | Alta (9) | 52% | 💥 Exploit | Broadcom Anti-virus FOR THE EnterpriseBroadcom Brightstor Arcserve BackupCA Brightstor Arcserve BackupCA Threat Manager FOR THE Enterprise | 7/4/2008 | 16/6/2026 | Multiple stack-based buffer overflows in Computer Associates (CA) Alert Notification Service (Alert.exe) 8.1.586.0, 8.0.450.0, and 7.1.758.0, as used in multiple CA products including Anti-Virus for the Enterprise 7.1 through r11.1 and Threat Manager for the Enterprise 8.1 and r8, allow remote authenticated users to… | |
| Modificada | Alta (9.3) | 39% | 💥 Exploit | Computer Associates Brightstor Arcserve Backup Laptops DesktopsComputer Associates Desktop Management SuiteComputer Associates Unicenter DSM R11 List Control ATXUnicenter Asset Management+3 | 24/3/2008 | 16/6/2026 | Stack-based buffer overflow in the ListCtrl ActiveX Control (ListCtrl.ocx), as used in multiple CA products including BrightStor ARCserve Backup R11.5, Desktop Management Suite r11.1 through r11.2, and Unicenter products r11.1 through r11.2, allows remote attackers to execute arbitrary code or cause a denial of… | |
| Modificada | Alta (10) | 9.9% | — | Broadcom Brightstor Arcserve BackupBroadcom Brightstor Enterprise BackupBroadcom Business Protection SuiteBroadcom Server Protection Suite+2 | 13/10/2007 | 16/6/2026 | Queue.dll for the message queuing service (LQserver.exe) in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, allows remote attackers to execute arbitrary code via a malformed ONRPC protocol request for operation 0x76, which causes ARCserve Backup to dereference arbitrary pointers. | |
| Modificada | Alta (10) | 12% | — | Broadcom Brightstor Arcserve BackupBroadcom Brightstor Enterprise BackupBroadcom Business Protection SuiteBroadcom Server Protection Suite+2 | 13/10/2007 | 16/6/2026 | Multiple buffer overflows in (1) RPC and (2) rpcx.dll in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, allow remote attackers to execute arbitrary code via unspecified vectors. | |
| Modificada | Alta (10) | 7.0% | — | Broadcom Brightstor Arcserve BackupBroadcom Brightstor Enterprise Backup | 13/10/2007 | 16/6/2026 | The Message Engine RPC service in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, allows attackers to execute arbitrary code by using certain "insecure method calls" to modify the file system and registry, aka "Privileged function exposure." | |
| Modificada | Alta (10) | 5.3% | 💥 Exploit | Broadcom Brightstor Arcserve BackupBroadcom Brightstor Enterprise Backup | 13/10/2007 | 16/6/2026 | Multiple unspecified vulnerabilities in (1) mediasvr and (2) caloggerd in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, have unknown impact and attack vectors related to memory corruption. | |
| Modificada | Alta (10) | 16% | — | Broadcom Brightstor Arcserve BackupBroadcom Brightstor Enterprise Backup | 13/10/2007 | 16/6/2026 | Stack-based buffer overflow in the RPC interface for the Message Engine (mediasvr.exe) in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, allows remote attackers to execute arbitrary code via a long argument in the 0x10d opnum. | |
| Modificada | Alta (10) | 2.2% | — | Broadcom Brightstor Arcserve BackupBroadcom Brightstor Enterprise BackupBroadcom Business Protection SuiteBroadcom Server Protection Suite+2 | 13/10/2007 | 16/6/2026 | Unspecified vulnerability in dbasvr in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, has unknown impact and attack vectors related to memory corruption. | |
| Modificada | Alta (10) | 13% | — | Broadcom Brightstor Arcserve BackupBroadcom Brightstor Enterprise Backup | 13/10/2007 | 16/6/2026 | The cadbd RPC service in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, allows remote attackers to (1) execute arbitrary code via stack-based buffer overflows in unspecified RPC procedures, and (2) trigger memory corruption related to the use of "handle" RPC arguments as pointers. | |
| Modificada | Alta (10) | 12% | — | Broadcom Brightstor Arcserve BackupBroadcom Brightstor Enterprise Backup | 13/10/2007 | 16/6/2026 | Multiple buffer overflows in (1) the Message Engine and (2) AScore.dll in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, allow remote attackers to execute arbitrary code via unspecified vectors. | |
| Modificada | Alta (10) | 5.2% | — | Broadcom Brightstor Arcserve Backup Laptops DesktopsBroadcom Desktop Management SuiteCA Protection Suites | 1/10/2007 | 16/6/2026 | Directory traversal vulnerability in rxRPC.dll in CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r11.0 through r11.5 allows remote attackers to upload and overwrite arbitrary files via a ..\ (dot dot backslash) sequence in the destination filename argument to sub-function 8 in the… | |
| Modificada | Alta (10) | 21% | — | Broadcom Brightstor Arcserve Backup Laptops DesktopsBroadcom Desktop Management SuiteCA Protection Suites | 1/10/2007 | 16/6/2026 | Multiple command handlers in CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r11.0 through r11.5 do not verify if a peer is authenticated, which allows remote attackers to add and delete users, and start client restores. | |
| Modificada | Alta (10) | 67% | 💥 Exploit | Broadcom Brightstor Arcserve Backup Laptops DesktopsBroadcom Desktop Management SuiteCA Protection Suites | 1/10/2007 | 16/6/2026 | Multiple stack-based buffer overflows in CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r11.0 through r11.5 allow remote attackers to execute arbitrary code via a long (1) username or (2) password to the rxrLogin command in rxRPC.dll, or a long (3) username argument to the GetUserInfo… | |
| Modificada | Alta (9.3) | 8.9% | — | Broadcom Brightstor Arcserve Backup Laptops DesktopsBroadcom Desktop Management SuiteCA Protection Suites | 1/10/2007 | 16/6/2026 | Integer overflow in CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r11.0 through r11.5 allows remote attackers to execute arbitrary code via a long username and a certain "useless" password. | |
| Modificada | Media (4.3) | 3.6% | — | Broadcom Anti-spywareBroadcom Anti-virus FOR THE EnterpriseBroadcom Anti Virus SDKBroadcom Antispyware FOR THE Enterprise+19 | 26/7/2007 | 16/6/2026 | arclib.dll before 7.3.0.9 in CA Anti-Virus (formerly eTrust Antivirus) 8 and certain other CA products allows remote attackers to cause a denial of service (infinite loop and loss of antivirus functionality) via an invalid "previous listing chunk number" field in a CHM file. | |
| Modificada | Alta (9.3) | 14% | — | Broadcom Alert Notification ServerBroadcom Brightstor Arcserve BackupBroadcom Brightstor Enterprise BackupCA Anti-virus FOR THE Enterprise+4 | 18/7/2007 | 16/6/2026 | Multiple stack-based buffer overflows in the RPC implementation in alert.exe before 8.0.255.0 in CA (formerly Computer Associates) Alert Notification Server, as used in Threat Manager for the Enterprise, Protection Suites, certain BrightStor ARCserve products, and BrightStor Enterprise Backup, allow remote attackers… | |
| Modificada | Alta (10) | 59% | 💥 Exploit | Broadcom Brightstor Arcserve Backup Laptops Desktops | 14/6/2007 | 16/6/2026 | Multiple buffer overflows in the LGServer component of CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r11.1 allow remote attackers to execute arbitrary code via crafted arguments to the (1) rxsAddNewUser, (2) rxsSetUserInfo, (3) rxsRenameUser, (4) rxsSetMessageLogSettings, (5)… | |
| Modificada | Alta (9.3) | 50% | 💥 Exploit | Broadcom Anti-virus FOR THE EnterpriseBroadcom Brightstor Arcserve BackupBroadcom Common ServicesBroadcom Etrust Antivirus+9 | 6/6/2007 | 16/6/2026 | Stack-based buffer overflow in the Anti-Virus engine before content update 30.6 in multiple CA (formerly Computer Associates) products allows remote attackers to execute arbitrary code via a large invalid value of the coffFiles field in a .CAB file. | |
| Modificada | Alta (10) | 23% | — | Broadcom Anti-virus FOR THE EnterpriseBroadcom Brightstor Arcserve BackupBroadcom Brightstor Enterprise BackupBroadcom Common Services+2 | 6/6/2007 | 16/6/2026 | Stack-based buffer overflow in the Anti-Virus engine before content update 30.6 in multiple CA (formerly Computer Associates) products allows remote attackers to execute arbitrary code via a long filename in a .CAB file. | |
| Modificada | Alta (7.8) | 12% | 💥 Exploit | CA Brightstor Arcserve Backup | 21/5/2007 | 16/6/2026 | (1) caloggerd.exe (camt70.dll) and (2) mediasvr.exe (catirpc.dll and rwxdr.dll) in CA BrightStor Backup 11.5.2.0 SP2 allow remote attackers to cause a denial of service (NULL dereference and application crash) via a crafted RPC packet. | |
| Modificada | Alta (10) | 78% | 💥 Exploit | Broadcom Brightstor Arcserve BackupBroadcom Business Protection SuiteBroadcom Server Protection SuiteCA Brightstor Arcserve Backup+1 | 25/4/2007 | 16/6/2026 | Multiple stack-based buffer overflows in the SUN RPC service in CA (formerly Computer Associates) BrightStor ARCserve Media Server, as used in BrightStor ARCserve Backup 9.01 through 11.5 SP2, BrightStor Enterprise Backup 10.5, Server Protection Suite 2, and Business Protection Suite 2, allow remote attackers to… |