Short Name |
APP:CA:ARCSRV:UNICENTERAGENT-OF |
---|---|
Severity |
Minor |
Recommended |
No |
Recommended Action |
Drop |
Category |
APP |
Keywords |
Computer Associates BrightStor Unicenter Agent Overflow |
Release Date |
2005/06/15 |
Update Number |
1213 |
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-11.4+, srx-12.1+, srx-branch-12.1+, vmx-17.4+, vsrx-12.1+, vsrx3bsd-18.2+ |
This signature detects attempts to exploit a known vulnerability against the BrightStor Unicenter Agent. Attackers, knowing the login credentials for the affected file system, can gain unauthorized access and possibly execute arbitrary code with root permissions.
Several Computer Associates Unicenter TNG utilities have been reported to be prone to multiple remote buffer overflow vulnerabilities. These vulnerabilities likely exist due to a lack of sufficient boundary checks performed on user-supplied data. It has been reported that these issues are exploitable remotely without prior authentication to potentially have arbitrary code executed with SYSTEM privileges on a vulnerable host.