{ "schema_version": "1.4.0", "id": "GHSA-qjf7-69w3-45mh", "modified": "2022-05-01T18:11:31Z", "published": "2022-05-01T18:11:31Z", "aliases": [ "CVE-2007-3216" ], "details": "Multiple buffer overflows in the LGServer component of CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r11.1 allow remote attackers to execute arbitrary code via crafted arguments to the (1) rxsAddNewUser, (2) rxsSetUserInfo, (3) rxsRenameUser, (4) rxsSetMessageLogSettings, (5) rxsExportData, (6) rxsSetServerOptions, (7) rxsRenameFile, (8) rxsACIManageSend, (9) rxsExportUser, (10) rxsImportUser, (11) rxsMoveUserData, (12) rxsUseLicenseIni, (13) rxsLicGetSiteId, (14) rxsGetLogFileNames, (15) rxsGetBackupLog, (16) rxsBackupComplete, (17) rxsSetDataProtectionSecurityData, (18) rxsSetDefaultConfigName, (19) rxsGetMessageLogSettings, (20) rxsHWDiskGetTotal, (21) rxsHWDiskGetFree, (22) rxsGetSubDirs, (23) rxsGetServerDBPathName, (24) rxsSetServerOptions, (25) rxsDeleteFile, (26) rxsACIManageSend, (27) rxcReadBackupSetList, (28) rxcWriteConfigInfo, (29) rxcSetAssetManagement, (30) rxcWriteFileListForRestore, (31) rxcReadSaveSetProfile, (32) rxcInitSaveSetProfile, (33) rxcAddSaveSetNextAppList, (34) rxcAddSaveSetNextFilesPathList, (35) rxcAddNextBackupSetIncWildCard, (36) rxcGetRevisions, (37) rxrAddMovedUser, (38) rxrSetClientVersion, or (39) rxsSetDataGrowthScheduleAndFilter commands.", "severity": [], "affected": [], "references": [ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2007-3216" }, { "type": "WEB", "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/34805" }, { "type": "WEB", "url": "http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=599" }, { "type": "WEB", "url": "http://osvdb.org/35329" }, { "type": "WEB", "url": "http://research.eeye.com/html/advisories/published/AD20070920.html" }, { "type": "WEB", "url": "http://research.eeye.com/html/advisories/upcoming/20070604.html" }, { "type": "WEB", "url": "http://secunia.com/advisories/25606" }, { "type": "WEB", "url": "http://supportconnectw.ca.com/public/sams/lifeguard/infodocs/bsabld-securitynotice.asp" }, { "type": "WEB", "url": "http://supportconnectw.ca.com/public/sams/lifeguard/infodocs/caarcservebld-securitynotice.asp" }, { "type": "WEB", "url": "http://www.ca.com/us/securityadvisor/newsinfo/collateral.aspx?cid=156006" }, { "type": "WEB", "url": "http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=35673" }, { "type": "WEB", "url": "http://www.securityfocus.com/archive/1/480252/100/100/threaded" }, { "type": "WEB", "url": "http://www.securityfocus.com/bid/24348" }, { "type": "WEB", "url": "http://www.securitytracker.com/id?1018216" }, { "type": "WEB", "url": "http://www.securitytracker.com/id?1018728" }, { "type": "WEB", "url": "http://www.vupen.com/english/advisories/2007/2121" } ], "database_specific": { "cwe_ids": [ "CWE-119" ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2007-06-14T22:30:00Z" } }