PT-2007-6181 · Ca · Ca Brightstor Hierarchical Storage Manager

Published

2007-10-01

·

Updated

2021-04-07

·

CVE-2007-5084

CVSS v2.0

6.8

Medium

VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions CA BrightStor Hierarchical Storage Manager (HSM) versions prior to r11.6
Description The issue allows remote attackers to execute arbitrary SQL commands. This is achieved through the CsAgent service commands with specific opcodes, including 0x07, 0x08, 0x09, 0x1E, 0x32, 0x36, and 0x40.
Recommendations For CA BrightStor Hierarchical Storage Manager (HSM) versions prior to r11.6, update to version r11.6 or later to resolve the issue.

Fix

SQL injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2007-5084

Affected Products

Ca Brightstor Hierarchical Storage Manager