02 Apr 2007
Companies that use Computer Associates storage software are being warned to update their systems after exploit code surfaced for a recently-patched vulnerability.
The US Computer Emergency Response Team (US-Cert) reported that exploit code has been posted for a vulnerability in the CA Brightstor ARCserve Backup Media application. The exploit targets the 'mediasvr' component in the software.
SecurityFocus said that the vulnerability is known to exist in at least nine of CA's server security and backup applications.
Users can mitigate the vulnerability by installing a vendor patch released in January, according to SecurityFocus.
US-Cert does not list a solution for the vulnerability and advises administrators to restrict the use of remote procedure call commands.
SecurityFocus said that a successful exploit could offer system-level access to the target machine with the ability to remotely execute code. If the exploit attempt fails, a denial of service crash could be triggered.
Latest stories from Security
Related articles
Related jobs
Poll
What is the most important IT priority for your company this year?
Sneak peek at the forthcoming glass-based machine
Connect with V3.co.uk
This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes
Why good data management at all levels is essential in the modern business (video, 6mins)
Systems Analysis Project Lead - UML, Agile, Waterfall...
IT Business Analyst - ISEB, PRINCE2 - Southampton, Hampshire...
Predictive Modelling analytics - (SAS) - South-East...
iOs Developer - JEE, cocoa, Objective-C - Midlands (potential...
Keep up to date with the latest products, services and technologies from the world's leading IT companies. IThound.com brings you over 2,000 white papers, case studies and analyst reports.
Do you agree?