APP: Computer Associates BrightStor Unicenter Agent Overflow (2)

This signature detects attempts to exploit a known vulnerability against the BrightStor Unicenter Agent. Attackers, knowing the login credentials for the affected file system, can gain unauthorized access and possibly execute arbitrary code with root permissions.

Extended Description

Several Computer Associates Unicenter TNG utilities have been reported to be prone to multiple remote buffer overflow vulnerabilities. These vulnerabilities likely exist due to a lack of sufficient boundary checks performed on user-supplied data. It has been reported that these issues are exploitable remotely without prior authentication to potentially have arbitrary code executed with SYSTEM privileges on a vulnerable host.

Affected Products

Computer_associates unicenter_tng

Short Name
APP:CA:ARCSRV:UNICENTERAGENT-2
Severity
Minor
Recommended
False
Recommended Action
None
Category
APP
Keywords
(2) Agent Associates BrightStor CVE-2004-1812 Computer Overflow Unicenter bid:9863
Release Date
11/24/2009
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
Port
TCP/3104,9990
False Positive
Unknown
Vendors

Computer_associates

CVSS Score

10.0

Found a potential security threat?