CA_ARCserve_Backup_Discovery_Service_Denial_of_Service_attack

Strike ID:
G08-4iz01
CVSS:
5.0 (AV:N/AC:L/Au:N/C:N/I:N/A:P)
False Positive:
t
Variants:
1
Year:
2008

Description

There exists a denial of service vulnerability in CA ARCserve Backup Discovery service. The vulnerability is due to insufficient input validation by casdscsvc.exe. A remote unauthenticated attacker may exploit this vulnerability by sending a crafted message to the target server. A successful attack could create a denial of service condition to the Discovery service. The affected ARCserve Backup Discovery service will terminate upon processing the malicious message.

CVE

References

Bid