Trend Micro Security

CA ARCserve Backup Directory Traversal Vulnerability

  危険度: : 緊急
  CVE識別番号: CVE-2008-4397

  概要

Directory traversal vulnerability in the RPC interface (asdbapi.dll) in CA ARCserve Backup (formerly BrightStor ARCserve Backup) r11.1 through r12.0 allows remote attackers to execute arbitrary commands via a .. (dot dot) in an RPC call with opnum 0x10A.

  トレンドマイクロの対策

Apply associated Trend Micro DPI Rules.

  対応方法

  Trend Micro Deep Security DPI Rule Number: 1003158
  Trend Micro Deep Security DPI Rule Name: 1003158 - CA ARCserve Backup Directory Traversal Vulnerability

  影響を受けるソフトウェア

  • ca arcserve_backup r11.1
  • ca arcserve_backup r11.5
  • ca arcserve_backup r12.0
  • ca business_protection_suite r2
  • ca server_protection_suite r2