Exploit code surfaces for CA vulnerability

By
Follow google news

Successful exploit could offer system-level access.

Exploit code surfaces for CA vulnerability
Companies that use Computer Associates storage software are being warned to update their systems after exploit code surfaced for a recently-patched vulnerability. 

The US Computer Emergency Response Team (US-Cert) reported that exploit code has been posted for a vulnerability in the CA Brightstor ARCserve Backup Media application. The exploit targets the 'mediasvr' component in the software. 

SecurityFocus said that the vulnerability is known to exist in at least nine of CA's server security and backup applications. 

Users can mitigate the vulnerability by installing a vendor patch released in January, according to SecurityFocus.

US-Cert does not list a solution for the vulnerability and advises administrators to restrict the use of remote procedure call commands.

SecurityFocus said that a successful exploit could offer system-level access to the target machine with the ability to remotely execute code. If the exploit attempt fails, a denial of service crash could be triggered.

Add iTnews as your trusted source

Got a news tip for our journalists? Share it with us anonymously here.
Copyright ©v3.co.uk
Tags:

Most Read Articles

ASD to retire Essential Eight cyber security framework within next two years

ASD to retire Essential Eight cyber security framework within next two years

Fake IT worker threat spreads outside tech sector in Australia

Fake IT worker threat spreads outside tech sector in Australia

NAB's SecOps rethink focuses on data expert and dev hires

NAB's SecOps rethink focuses on data expert and dev hires

NAB builds integrated ops hub for threat intelligence

NAB builds integrated ops hub for threat intelligence

Log In

  |  Forgot your password?