PT-2008-2920 · Ca · Ca Arcserve Backup For Laptops/Desktops+1
Dyon Balding
·
Published
2008-04-07
·
Updated
2021-04-08
·
CVE-2008-1329
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
CA ARCserve Backup for Laptops and Desktops versions r11.0 through r11.5
CA ARCserve Backup Suite versions 11.1 and 11.2
Description
The issue allows remote attackers to execute arbitrary commands due to insufficient verification of file uploads.
Recommendations
For CA ARCserve Backup for Laptops and Desktops versions r11.0 through r11.5, update to a version outside of the affected range.
For CA ARCserve Backup Suite versions 11.1 and 11.2, update to a version outside of the affected range.
As a temporary workaround, consider restricting file uploads to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Ca Arcserve Backup Suite
Ca Arcserve Backup For Laptops/Desktops