Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2698▼ 345 respecto a la semana anterior
Críticas / altas1316▼ 9 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 273 respecto a la semana anterior
–

79 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (5)3.5%—CA Arcserve BackupAI20/10/201216/6/2026
The (1) server and (2) agent components in CA ARCserve Backup r12.5, r15, and r16 on Windows do not properly validate RPC requests, which allows remote attackers to cause a denial of service (service crash) via a crafted request.
ModificadaAlta (7.5)4.1%—CA Arcserve BackupAI20/10/201216/6/2026
The server in CA ARCserve Backup r12.5, r15, and r16 on Windows does not properly process RPC requests, which allows remote attackers to execute arbitrary code or cause a denial of service via a crafted request.
ModificadaMedia (5)2.2%—Broadcom Arcserve Backup22/3/201216/6/2026
CA ARCserve Backup r12.0 through SP2, r12.5 before SP2, r15 through SP1, and r16 before SP1 on Windows allows remote attackers to cause a denial of service (service shutdown) via a crafted network request.
ModificadaBaja (2.1)0.33%—CA Arcserve BackupAI7/6/201016/6/2026
Unspecified vulnerability in CA ARCserve Backup r11.5 SP4, r12.0 SP2, and r12.5 SP1 on Windows allows local users to obtain sensitive information via unknown vectors.
ModificadaMedia (4.3)2.4%—Broadcom Anti-virusBroadcom Anti-virus FOR THE EnterpriseBroadcom Anti-virus SDKBroadcom Common Services+2913/10/200916/6/2026
Unspecified vulnerability in the arclib component in the Anti-Virus engine in CA Anti-Virus for the Enterprise (formerly eTrust Antivirus) 7.1 through r8.1; Anti-Virus 2007 (v8) through 2009; eTrust EZ Antivirus r7.1; Internet Security Suite 2007 (v3) through Plus 2009; and other CA products allows remote attackers to…
ModificadaAlta (9.3)7.6%—Broadcom Anti-virusBroadcom Anti-virus FOR THE EnterpriseBroadcom Anti-virus SDKBroadcom Common Services+2813/10/200916/6/2026
Unspecified vulnerability in the arclib component in the Anti-Virus engine in CA Anti-Virus for the Enterprise (formerly eTrust Antivirus) 7.1 through r8.1; Anti-Virus 2007 (v8) through 2009; eTrust EZ Antivirus r7.1; Internet Security Suite 2007 (v3) through Plus 2009; and other CA products allows remote attackers to…
ModificadaMedia (5)2.2%—CA Arcserve Backup16/6/200916/6/2026
The message engine in CA ARCserve Backup r12.0 and r12.0 SP1 for Windows allows remote attackers to cause a denial of service (crash) via (1) an invalid 0x13 message, which is not properly handled in the ASCORE module, or (2) a 0x3B message with invalid stub data that triggers an RPC marshalling error.
ModificadaAlta (10)4.3%—Broadcom Anti-spywareBroadcom Anti-spyware FOR THE EnterpriseBroadcom Anti-virusBroadcom Anti-virus FOR THE Enterprise+1528/1/200916/6/2026
Multiple unspecified vulnerabilities in the Arclib library (arclib.dll) before 7.3.0.15 in the CA Anti-Virus engine for CA Anti-Virus for the Enterprise 7.1, r8, and r8.1; Anti-Virus 2007 v8 and 2008; Internet Security Suite 2007 v3 and 2008; and other CA products allow remote attackers to bypass virus detection via a…
ModificadaAlta (10)8.3%—Broadcom Arcserve BackupCA Arcserve Backup11/12/200816/6/2026
The LDBserver service in the server in CA ARCserve Backup 11.1 through 12.0 on Windows allows remote attackers to execute arbitrary code via a handle_t argument to an RPC endpoint in which the argument refers to an incompatible procedure.
ModificadaMedia (5)3.4%—Broadcom Arcserve BackupBroadcom Business Protection SuiteBroadcom Server Protection SuiteCA Arcserve Backup+114/10/200816/6/2026
Unspecified vulnerability in asdbapi.dll in CA ARCserve Backup (formerly BrightStor ARCserve Backup) r11.1 through r12.0 allows remote attackers to cause a denial of service (crash of multiple services) via crafted authentication credentials, related to "insufficient validation."
ModificadaMedia (5)8.2%—Broadcom Arcserve BackupBroadcom Business Protection SuiteBroadcom Server Protection SuiteCA Arcserve Backup+114/10/200816/6/2026
Unspecified vulnerability in the database engine service in asdbapi.dll in CA ARCserve Backup (formerly BrightStor ARCserve Backup) r11.1 through r12.0 allows remote attackers to cause a denial of service (crash) via a crafted request, related to "insufficient validation."
ModificadaMedia (5)8.2%—Broadcom Arcserve BackupBroadcom Business Protection SuiteBroadcom Server Protection SuiteCA Arcserve Backup+114/10/200816/6/2026
Unspecified vulnerability in the tape engine service in asdbapi.dll in CA ARCserve Backup (formerly BrightStor ARCserve Backup) r11.1 through r12.0 allows remote attackers to cause a denial of service (crash) via a crafted request.
ModificadaAlta (10)81%—Broadcom Arcserve BackupBroadcom Business Protection SuiteBroadcom Server Protection SuiteCA Arcserve Backup+114/10/200816/6/2026
Directory traversal vulnerability in the RPC interface (asdbapi.dll) in CA ARCserve Backup (formerly BrightStor ARCserve Backup) r11.1 through r12.0 allows remote attackers to execute arbitrary commands via a .. (dot dot) in an RPC call with opnum 0x10A.
ModificadaAlta (10)14%—Broadcom Brightstor Arcserve BackupBroadcom Desktop Management SuiteCA Arcserve Backup FOR Laptops AND DesktopsCA Brightstor Arcserve Backup+11/8/200816/6/2026
Integer underflow in rxRPC.dll in the LGServer service in the server in CA ARCserve Backup for Laptops and Desktops 11.0 through 11.5 allows remote attackers to execute arbitrary code or cause a denial of service via a crafted message that triggers a buffer overflow.
ModificadaAlta (7.5)15%—Broadcom Brightstor Arcserve BackupCA Brightstor Arcserve Backup21/5/200816/6/2026
Multiple buffer overflows in xdr functions in the server in CA BrightStor ARCServe Backup 11.0, 11.1, and 11.5 allow remote attackers to execute arbitrary code, as demonstrated by a stack-based buffer overflow via a long parameter to the xdr_rwsstring function.
ModificadaAlta (10)12%—Broadcom Brightstor Arcserve BackupBroadcom Server Protection SuiteCA Brightstor Arcserve BackupCA Business Protection Suite21/5/200816/6/2026
Directory traversal vulnerability in caloggerd in CA BrightStor ARCServe Backup 11.0, 11.1, and 11.5 allows remote attackers to append arbitrary data to arbitrary files via directory traversal sequences in unspecified input fields, which are used in log messages. NOTE: this can be leveraged for code execution in many…
ModificadaMedia (5)3.6%—Broadcom Brightstor Arcserve Backup27/4/200816/6/2026
The Discovery Service (casdscvc) in CA ARCserve Backup 12.0.5454.0 and earlier allows remote attackers to cause a denial of service (crash) via a packet with a large integer value used in an increment to TCP port 41523, which triggers a buffer over-read.
ModificadaAlta (9.3)6.8%—Computer Associates Arcserve Backup Laptops AND DesktopsComputer Associates Desktop AND Server ManagementComputer Associates Desktop Management SuiteComputer Associates Unicenter Asset Management+316/4/200816/6/2026
The DSM gui_cm_ctrls ActiveX control (gui_cm_ctrls.ocx), as used in multiple CA products including BrightStor ARCServe Backup for Laptops and Desktops r11.5, Desktop Management Suite r11.1 through r11.2 C2; Unicenter r11.1 through r11.2 C2; and Desktop and Server Management r11.1 through r11.2 C2 allows remote…
ModificadaAlta (9)52%—Broadcom Anti-virus FOR THE EnterpriseBroadcom Brightstor Arcserve BackupCA Brightstor Arcserve BackupCA Threat Manager FOR THE Enterprise7/4/200816/6/2026
Multiple stack-based buffer overflows in Computer Associates (CA) Alert Notification Service (Alert.exe) 8.1.586.0, 8.0.450.0, and 7.1.758.0, as used in multiple CA products including Anti-Virus for the Enterprise 7.1 through r11.1 and Threat Manager for the Enterprise 8.1 and r8, allow remote authenticated users to…
ModificadaAlta (9.3)24%—Broadcom Desktop Management SuiteComputer Associates Arcserve Backup Laptops AND DesktopsComputer Associates Desktop Management Suite7/4/200816/6/2026
Buffer overflow in the LGServer service in CA ARCserve Backup for Laptops and Desktops r11.0 through r11.5, and Suite 11.1 and 11.2, allows remote attackers to execute arbitrary code via unspecified "command arguments."
ModificadaAlta (10)5.9%—Broadcom Desktop Management SuiteComputer Associates Arcserve Backup Laptops AND DesktopsComputer Associates Desktop Management Suite7/4/200816/6/2026
Unspecified vulnerability in the NetBackup service in CA ARCserve Backup for Laptops and Desktops r11.0 through r11.5, and Suite 11.1 and 11.2, allows remote attackers to execute arbitrary commands, related to "insufficient verification of file uploads."
ModificadaAlta (9.3)39%—Computer Associates Brightstor Arcserve Backup Laptops DesktopsComputer Associates Desktop Management SuiteComputer Associates Unicenter DSM R11 List Control ATXUnicenter Asset Management+324/3/200816/6/2026
Stack-based buffer overflow in the ListCtrl ActiveX Control (ListCtrl.ocx), as used in multiple CA products including BrightStor ARCserve Backup R11.5, Desktop Management Suite r11.1 through r11.2, and Unicenter products r11.1 through r11.2, allows remote attackers to execute arbitrary code or cause a denial of…
ModificadaAlta (10)16%—Broadcom Brightstor Arcserve BackupBroadcom Brightstor Enterprise Backup13/10/200716/6/2026
Stack-based buffer overflow in the RPC interface for the Message Engine (mediasvr.exe) in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, allows remote attackers to execute arbitrary code via a long argument in the 0x10d opnum.
ModificadaAlta (10)7.0%—Broadcom Brightstor Arcserve BackupBroadcom Brightstor Enterprise Backup13/10/200716/6/2026
The Message Engine RPC service in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, allows attackers to execute arbitrary code by using certain "insecure method calls" to modify the file system and registry, aka "Privileged function exposure."
ModificadaAlta (10)5.3%—Broadcom Brightstor Arcserve BackupBroadcom Brightstor Enterprise Backup13/10/200716/6/2026
Multiple unspecified vulnerabilities in (1) mediasvr and (2) caloggerd in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, have unknown impact and attack vectors related to memory corruption.