BaseServiceImpl.class in CA ARCserve D2D r15 does not properly handle sessions, which allows remote attackers to obtain credentials, and consequently execute arbitrary commands, via unspecified vectors.
References
Configurations
Information
Published : 2011-08-15 19:55
Updated : 2018-10-09 19:33
NVD link : CVE-2011-3011
Mitre link : CVE-2011-3011
JSON object : View
Products Affected
ca
- arcserve_d2d
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
