Vulnerabilities > CVE-2005-2535 - Unspecified vulnerability in Broadcom products

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
broadcom
exploit available
metasploit

Summary

Buffer overflow in the Discovery Service in BrightStor ARCserve Backup 9.0 through 11.1 allows remote attackers to execute arbitrary commands via a large packet to TCP port 41523, a different vulnerability than CVE-2005-0260.

Exploit-Db

  • descriptionCA BrightStor Discovery Service TCP Overflow. CVE-2005-2535. Remote exploit for windows platform
    idEDB-ID:16408
    last seen2016-02-01
    modified2010-04-30
    published2010-04-30
    reportermetasploit
    sourcehttps://www.exploit-db.com/download/16408/
    titleCA BrightStor Discovery Service TCP Overflow
  • descriptionCA BrightStor ARCserve Backup Remote Buffer Overlow PoC. CVE-2005-2535. Dos exploit for linux platform
    idEDB-ID:815
    last seen2016-01-31
    modified2005-02-12
    published2005-02-12
    reportercybertronic
    sourcehttps://www.exploit-db.com/download/815/
    titleCA BrightStor ARCserve Backup Remote Buffer Overlow PoC

Metasploit

descriptionThis module exploits a vulnerability in the CA BrightStor Discovery Service. This vulnerability occurs when a specific type of request is sent to the TCP listener on port 41523. This vulnerability was discovered by cybertronic[at]gmx.net and affects all known versions of the BrightStor product. This module is based on the 'cabrightstor_disco' exploit by HD Moore.
idMSF:EXPLOIT/WINDOWS/BRIGHTSTOR/DISCOVERY_TCP
last seen2020-06-01
modified2017-11-08
published2005-12-05
references
reporterRapid7
sourcehttps://github.com/rapid7/metasploit-framework/blob/master//modules/exploits/windows/brightstor/discovery_tcp.rb
titleCA BrightStor Discovery Service TCP Overflow

Packetstorm

data sourcehttps://packetstormsecurity.com/files/download/83210/discovery_tcp.rb.txt
idPACKETSTORM:83210
last seen2016-12-05
published2009-11-26
reporterH D Moore
sourcehttps://packetstormsecurity.com/files/83210/CA-BrightStor-Discovery-Service-TCP-Overflow.html
titleCA BrightStor Discovery Service TCP Overflow

Saint

bid12536
descriptionBrightStor ARCserve Backup discovery service buffer overflow
osvdb13814
titlebrightstor_arcserve_discovery
typeremote