CVE-2006-5172
Estado: ModificadaAlta (10)—
Stack-based buffer overflow in the RPC interface in Mediasvr.exe in Computer Associates (CA) Brightstor ARCserve Backup 9.01 through 11.5, Enterprise Backup 10.5, and CA Protection Suites r2 allows remote attackers to execute arbitrary code via crafted SUNRPC packets, aka the "Mediasvr.exe String Handling Overflow," a different vulnerability than CVE-2006-5171.
CVSS
- Versión: 2.0
- Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C
- Puntuación base: 10
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 15%
- Percentil entre todas las CVEs puntuadas: 97
- Fecha de la puntuación: 6/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
Tecnologías afectadas (3)
CWE
- NVD-CWE-Other
Referencias
- http://osvdb.org/31320
- http://secunia.com/advisories/23648
- http://securitytracker.com/id?1017506
- http://supportconnectw.ca.com/public/storage/infodocs/babimpsec-notice.asp
- http://www.iss.net/threats/253.html
- http://www.securityfocus.com/archive/1/456711
- http://www.securityfocus.com/bid/22016
- http://www.vupen.com/english/advisories/2007/0154
- https://exchange.xforce.ibmcloud.com/vulnerabilities/29344
- http://osvdb.org/31320
- http://secunia.com/advisories/23648
- http://securitytracker.com/id?1017506
- http://supportconnectw.ca.com/public/storage/infodocs/babimpsec-notice.asp
- http://www.iss.net/threats/253.html
- http://www.securityfocus.com/archive/1/456711
- http://www.securityfocus.com/bid/22016
- http://www.vupen.com/english/advisories/2007/0154
- https://exchange.xforce.ibmcloud.com/vulnerabilities/29344
JSON original (NVD)
Mostrar
{
"id": "CVE-2006-5172",
"cveTags": [],
"metrics": {
"cvssMetricV2": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"version": "2.0",
"baseScore": 10,
"accessVector": "NETWORK",
"vectorString": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"authentication": "NONE",
"integrityImpact": "COMPLETE",
"accessComplexity": "LOW",
"availabilityImpact": "COMPLETE",
"confidentialityImpact": "COMPLETE"
},
"acInsufInfo": false,
"impactScore": 10,
"baseSeverity": "HIGH",
"obtainAllPrivilege": true,
"exploitabilityScore": 10,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"affected": [
{
"source": "cve@mitre.org",
"affectedData": [
{
"vendor": "n/a",
"product": "n/a",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
]
}
],
"published": "2007-01-16T20:28:00.000",
"references": [
{
"url": "http://osvdb.org/31320",
"source": "cve@mitre.org"
},
{
"url": "http://secunia.com/advisories/23648",
"source": "cve@mitre.org"
},
{
"url": "http://securitytracker.com/id?1017506",
"source": "cve@mitre.org"
},
{
"url": "http://supportconnectw.ca.com/public/storage/infodocs/babimpsec-notice.asp",
"tags": [
"Exploit"
],
"source": "cve@mitre.org"
},
{
"url": "http://www.iss.net/threats/253.html",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/archive/1/456711",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/bid/22016",
"source": "cve@mitre.org"
},
{
"url": "http://www.vupen.com/english/advisories/2007/0154",
"source": "cve@mitre.org"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/29344",
"source": "cve@mitre.org"
},
{
"url": "http://osvdb.org/31320",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://secunia.com/advisories/23648",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://securitytracker.com/id?1017506",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://supportconnectw.ca.com/public/storage/infodocs/babimpsec-notice.asp",
"tags": [
"Exploit"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.iss.net/threats/253.html",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securityfocus.com/archive/1/456711",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securityfocus.com/bid/22016",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.vupen.com/english/advisories/2007/0154",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/29344",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "Stack-based buffer overflow in the RPC interface in Mediasvr.exe in Computer Associates (CA) Brightstor ARCserve Backup 9.01 through 11.5, Enterprise Backup 10.5, and CA Protection Suites r2 allows remote attackers to execute arbitrary code via crafted SUNRPC packets, aka the \"Mediasvr.exe String Handling Overflow,\" a different vulnerability than CVE-2006-5171."
},
{
"lang": "es",
"value": "Desbordamiento de búfer basado en pila en el interfaz RPC de Mediasvr.exe en Computer Associates (CA) Brightstor ARCserve Backup 9.01 hasta 11.5, Enterprise Backup 10.5, y CA Protection Suites r2 permite a atacantes remotos ejecutar código de su elección mediante paquetes SUNRPC artesanales, también conocido como \"Mediasvr.exe String Handling Overflow\", una vulnerabilidad diferente que CVE-2006-5171."
}
],
"lastModified": "2026-06-16T22:30:38.437",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:broadcom:brightstor_arcserve_backup:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "0A72E07D-2997-46CF-847F-899CB60FC771",
"versionEndIncluding": "11.5"
},
{
"criteria": "cpe:2.3:a:broadcom:brightstor_arcserve_backup:9.01:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "F52790F8-0D23-47F4-B7F7-6CB0F7B6EA14"
},
{
"criteria": "cpe:2.3:a:broadcom:brightstor_enterprise_backup:10.5:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "78AA54EA-DAF1-4635-AA1B-E2E49C4BB597"
},
{
"criteria": "cpe:2.3:a:ca:protection_suites:r2:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "47C10BA4-B241-4F65-8FA1-AD88266C03B0"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "cve@mitre.org"
}