CVE-2001-1346: Low severity Broadcom Arcserve Backup vulnerability
Published May 18, 2001
·Updated
Computer Associates ARCserveIT 6.61 and 6.63 (also called ARCservIT) allows local users to overwrite arbitrary files via a symlink attack on the temporary files (1) asagent.tmp or (2) inetd.tmp.
Affected Software
2 affected components
Broadcom Arcserve Backup=6.61
CA ARCserve Backup=6.63
Event History
May 18, 2001
CVE Published
04:00 AM
May 3, 2002
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-1346?
CVE-2001-1346 is considered a high-severity vulnerability due to its potential for local file overwrite.
2
How do I fix CVE-2001-1346?
To fix CVE-2001-1346, consider updating to the latest version of ARCserveIT that addresses this vulnerability.
3
What systems are affected by CVE-2001-1346?
CVE-2001-1346 affects versions 6.61 and 6.63 of Computer Associates ARCserveIT.
4
What type of attack does CVE-2001-1346 involve?
CVE-2001-1346 involves a symlink attack allowing local users to overwrite arbitrary files.
5
Who can exploit CVE-2001-1346?
CVE-2001-1346 can be exploited by local users who have access to the temporary files of ARCserveIT.