Vulnerabilities > Broadcom > Critical

DATE CVE VULNERABILITY TITLE RISK
2007-10-13 CVE-2007-5327 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Broadcom products
Stack-based buffer overflow in the RPC interface for the Message Engine (mediasvr.exe) in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, allows remote attackers to execute arbitrary code via a long argument in the 0x10d opnum.
network
low complexity
broadcom CWE-119
critical
10.0
2007-10-13 CVE-2007-5326 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in multiple products
Multiple buffer overflows in (1) RPC and (2) rpcx.dll in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, allow remote attackers to execute arbitrary code via unspecified vectors.
network
low complexity
broadcom ca CWE-119
critical
10.0
2007-10-13 CVE-2007-5325 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Broadcom products
Multiple buffer overflows in (1) the Message Engine and (2) AScore.dll in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, allow remote attackers to execute arbitrary code via unspecified vectors.
network
low complexity
broadcom CWE-119
critical
10.0
2007-10-01 CVE-2007-5083 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Broadcom Brightstor Hierarchical Storage Manager 11.5
Multiple integer overflows in Computer Associates (CA) BrightStor Hierarchical Storage Manager (HSM) before r11.6 allow remote attackers to execute arbitrary code via unspecified CsAgent service commands that trigger a heap-based buffer overflow.
network
low complexity
broadcom CWE-119
critical
10.0
2007-10-01 CVE-2007-5082 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Broadcom Brightstor Hierarchical Storage Manager 11.5
Multiple stack-based buffer overflows in Computer Associates (CA) BrightStor Hierarchical Storage Manager (HSM) before r11.6 allow remote attackers to execute arbitrary code via unspecified CsAgent service commands with certain opcodes, related to missing validation of a length parameter.
network
low complexity
broadcom CWE-119
critical
10.0
2007-10-01 CVE-2007-5006 Improper Authentication vulnerability in multiple products
Multiple command handlers in CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r11.0 through r11.5 do not verify if a peer is authenticated, which allows remote attackers to add and delete users, and start client restores.
network
low complexity
broadcom ca CWE-287
critical
10.0
2007-10-01 CVE-2007-5005 Path Traversal vulnerability in multiple products
Directory traversal vulnerability in rxRPC.dll in CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r11.0 through r11.5 allows remote attackers to upload and overwrite arbitrary files via a ..\ (dot dot backslash) sequence in the destination filename argument to sub-function 8 in the rxrReceiveFileFromServer command.
network
low complexity
broadcom ca CWE-22
critical
10.0
2007-10-01 CVE-2007-5004 Numeric Errors vulnerability in multiple products
Integer overflow in CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r11.0 through r11.5 allows remote attackers to execute arbitrary code via a long username and a certain "useless" password.
network
broadcom ca CWE-189
critical
9.3
2007-10-01 CVE-2007-5003 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in multiple products
Multiple stack-based buffer overflows in CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r11.0 through r11.5 allow remote attackers to execute arbitrary code via a long (1) username or (2) password to the rxrLogin command in rxRPC.dll, or a long (3) username argument to the GetUserInfo function.
network
low complexity
broadcom ca CWE-119
critical
10.0
2007-07-26 CVE-2007-3302 The CallCode ActiveX control in caller.dll 3.0 before 20070713, and 3.0 SP1 before 3.0.5.81, in CA (formerly Computer Associates) eTrust Intrusion Detection allows remote attackers to load arbitrary DLLs on a client system, and execute code from these DLLs, via unspecified "scriptable functions."
network
broadcom ca
critical
9.3