First published: Fri May 18 2001(Updated: )
Computer Associates ARCserveIT 6.61 and 6.63 (also called ARCservIT) allows local users to overwrite arbitrary files via a symlink attack on the temporary files (1) asagent.tmp or (2) inetd.tmp.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Broadcom BrightStor ARCserve Backup | =6.61 | |
CA ARCserve Backup for Laptops and Desktops | =6.63 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-1346 is considered a high-severity vulnerability due to its potential for local file overwrite.
To fix CVE-2001-1346, consider updating to the latest version of ARCserveIT that addresses this vulnerability.
CVE-2001-1346 affects versions 6.61 and 6.63 of Computer Associates ARCserveIT.
CVE-2001-1346 involves a symlink attack allowing local users to overwrite arbitrary files.
CVE-2001-1346 can be exploited by local users who have access to the temporary files of ARCserveIT.