Vulnerabilities > CVE-2005-2535 - Unspecified vulnerability in Broadcom products

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
broadcom
exploit available
metasploit

Summary

Buffer overflow in the Discovery Service in BrightStor ARCserve Backup 9.0 through 11.1 allows remote attackers to execute arbitrary commands via a large packet to TCP port 41523, a different vulnerability than CVE-2005-0260.

Exploit-Db

  • descriptionCA BrightStor Discovery Service TCP Overflow. CVE-2005-2535. Remote exploit for windows platform
    idEDB-ID:16408
    last seen2016-02-01
    modified2010-04-30
    published2010-04-30
    reportermetasploit
    sourcehttps://www.exploit-db.com/download/16408/
    titleCA BrightStor Discovery Service TCP Overflow
  • descriptionCA BrightStor ARCserve Backup Remote Buffer Overlow PoC. CVE-2005-2535. Dos exploit for linux platform
    idEDB-ID:815
    last seen2016-01-31
    modified2005-02-12
    published2005-02-12
    reportercybertronic
    sourcehttps://www.exploit-db.com/download/815/
    titleCA BrightStor ARCserve Backup Remote Buffer Overlow PoC

Metasploit

descriptionThis module exploits a vulnerability in the CA BrightStor Discovery Service. This vulnerability occurs when a specific type of request is sent to the TCP listener on port 41523. This vulnerability was discovered by cybertronic[at]gmx.net and affects all known versions of the BrightStor product. This module is based on the 'cabrightstor_disco' exploit by HD Moore.
idMSF:EXPLOIT/WINDOWS/BRIGHTSTOR/DISCOVERY_TCP
last seen2020-06-01
modified2017-11-08
published2005-12-05
references
reporterRapid7
sourcehttps://github.com/rapid7/metasploit-framework/blob/master//modules/exploits/windows/brightstor/discovery_tcp.rb
titleCA BrightStor Discovery Service TCP Overflow

Packetstorm

data sourcehttps://packetstormsecurity.com/files/download/83210/discovery_tcp.rb.txt
idPACKETSTORM:83210
last seen2016-12-05
published2009-11-26
reporterH D Moore
sourcehttps://packetstormsecurity.com/files/83210/CA-BrightStor-Discovery-Service-TCP-Overflow.html
titleCA BrightStor Discovery Service TCP Overflow

Saint

bid12536
descriptionBrightStor ARCserve Backup discovery service buffer overflow
osvdb13814
titlebrightstor_arcserve_discovery
typeremote