First published: Thu Dec 11 2008(Updated: )
The LDBserver service in the server in CA ARCserve Backup 11.1 through 12.0 on Windows allows remote attackers to execute arbitrary code via a handle_t argument to an RPC endpoint in which the argument refers to an incompatible procedure.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Broadcom BrightStor ARCserve Backup | =r12.0 | |
CA ARCserve Backup for Laptops and Desktops | =r11.1 | |
CA ARCserve Backup for Laptops and Desktops | =r11.5 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-5415 is considered critical as it allows remote attackers to execute arbitrary code.
To fix CVE-2008-5415, you should apply the latest security patches provided by CA for versions 11.1 to 12.0 of ARCserve Backup.
CVE-2008-5415 affects CA ARCserve Backup versions 11.1 to 12.0.
CVE-2008-5415 is a remote code execution vulnerability that can be exploited via an RPC endpoint.
Yes, CVE-2008-5415 can be exploited by remote attackers, making it particularly dangerous.