| OSVDB ID | Disclosure Date | Title |
|
4246
Description:
CA UnicenterTNG contains a flaw that allows a remote user to gain SYSTEM privileges. The issue is due to the cam.exe and awservices.exe program not properly validating input to various buffers. This allows an attacker to gain elevated privileges via standard buffer overflow attacks. No further details have been provided.
|
2004-03-12
|
CA Unicenter cam.exe/awservices.exe Overflow
|
|
10409
Description:
(Description Provided by CVE) : Computer Associates Unicenter Common Services 3.0 and earlier stores the database "SA" password in cleartext in the TndAddNspTmp.bat file, which could allow local users to gain privileges.
|
2004-09-29
|
CA Unicenter Common Services litestore.dat Password Disclosure
|
|
10407
Description:
CA Unicenter Common Services contains a flaw that may lead to an unauthorized password exposure. It is possible to gain access to the "SA" plaintext password when a user opens the TndAddNsp.bat as text, which may lead to a loss of confidentiality.
|
2004-09-29
|
CA Unicenter Common Services TndAddNsp.bat Password Disclosure
|
|
10408
Description:
CA Unicenter Common Services contains a flaw that may lead to an unauthorized password exposure. It is possible to gain access to the "SA" plaintext password when a user opens the TndAddNspTmp.bat as text, which may lead to a loss of confidentiality.
|
2004-09-29
|
CA Unicenter Common Services TndAddNspTmp.bat Password Disclosure
|
|
26
Description:
This host is running Computer Associates' Unicenter file transfer service. The file transfer service uses ports TCP 3104, UDP 4104 and TCP 4105 for communication between its clients and other Unicenter servers. An attacker could potentially use this service to transfer critical information to and from this host.
|
1999-01-01
|
CA Unicenter File Transfer Service Running
|
|
3245
Description:
Unicenter ServicePlus Service Desk contains a flaw that allows a remote attacker to execute arbitrary code on a vulnerable system. The issue is due to poor sanity checks in the file_upload.pl script. If an attacker supplies a specially-crafted URL they can use the script to execute arbitrary commands.
|
2003-06-04
|
CA Unicenter file_upload.pl Command Execution
|
|
3249
Description:
Unicenter and Control IT contain a flaw that allows a local user to gain elevated privileges. THe flaw is due to the Host and Viewer which will run an arbitrary program under the same privileges. No further details have been provided.
|
2000-01-01
|
CA Unicenter Host and Viewer Arbitrary Command Execution
|
|
10201
Description:
UniCenter Management Portal contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered when a request of a user's forgotten password occurs, which will disclose the existence of the user resulting in a loss of confidentiality.
|
2004-09-22
|
CA UniCenter Management Portal Username Disclosure
|
|
3248
Description:
Unicenter contains a flaw that allows an attacker to cause a denial of service. The issue is due to a buffer overflow in the Unicenter Message Queuing Service (CAM). No further details have been provided.
|
2003-10-01
|
CA Unicenter Message Queuing Service (CAM) DoS
|
|
3244
Description:
Unicenter and ServicePlus Service Desk contain a vulnerability that allows a remote attacker to bypass authentication and gain access to sensitive information. The issue is due to a flaw in the pdm_cgireport.exe program that allows users to create and view any report in the Service Desk.
|
2003-06-04
|
CA Unicenter pdm_cgireport.exe Information Disclosure
|
|
3246
Description:
Unicenter ServicePlus Service Desk allows a remote attacker to obtain sensitive information. The issue is due to poor sanity checking in the pdmcgi.exe script. If an attacker provides a specially-crafted query the script will return all requests being made. This information may contain sensitive information that aids in furhter attacks.
|
2003-06-04
|
CA Unicenter pdmcgi.exe Information Disclosure
|
|
3247
Description:
Unicenter TNG allows a remote attacker to view arbitrary files. The flaw is due to poor sanity checking in template selection of the pdmcgi.exe program. By specifying an arbitrary file, the program will display the contents to any user.
|
2003-06-04
|
CA Unicenter pdmcgi.exe View Arbitrary File
|
|
3243
Description:
Unicenter Remote Control could allow a local attacker to gain elevated privileges on a vulnerable system. The issue is due to the help interface allowing any application to be run under the same account that the host runs under.
|
2003-12-11
|
CA Unicenter RC Help Interface Privilege Escalation
|
|
12249
Description:
Unknown / Incomplete
|
2004-12-07
|
CA Unicenter Remote Control Arbitrary URC Management Server Access
|
|
3131
Description:
CA Unicenter Remote Control (URC) contains a flaw that may allow a remote denial of service. The issue is triggered when the host's port receives numerous, bogus, connection requests, and will result in loss of availability for the computer running the host service.
|
2003-12-12
|
CA Unicenter Remote Control DoS
|
|
3023
Description:
CA Unicenter Remote Control (URC) contains a flaw that may allow a malicious user to gain access to unauthorized privileges. The issue is triggered by abusing the "Help" interface. This flaw may lead to a loss of Confidentiality, Integrity and/or Availability.
|
2003-12-11
|
CA Unicenter Remote Control Privilege Escalation
|
|
4281
Description:
Unknown / Incomplete
|
2004-03-16
|
CA Unicenter TNG Daemons Overflow
|
|
27
Description:
This host is running Computer Associates' Unicenter transport service. The transport service uses ports TCP 3104, UDP 4104 and TCP 4105 for communication between its clients and other Unicenter servers. An attack could use this service to gather information about this host.
|
1999-01-01
|
CA Unicenter Transport Service Information Leak
|
|
3279
Description:
CA Unicenter contains a flaw that allows any local user to gain root privileges. The issue is due to Unicenter installing and setting a UMASK of 000. This causes several directories it creates to install with world writeable permissions. A local attacker can replace a number of SUID binaries in these world writeable directories with their own customer programs. The next time an administrator runs the programs, they will inadvertantly execute commands created by the malicious user.
|
1995-07-01
|
CA Unicenter Weak Directory Umask
|
|
3278
Description:
CA Unicenter has a flaw that allows any local user to execute arbitrary commands under root privileges. The flaw is due to the fact that Unicenter installs two scripts with SUID root privileges, and allows any user on the system to write to the scripts. Any local user can edit these scripts and add their own commands to the scripts, which will be executed the next time the admin runs them.
|
1995-07-01
|
CA Unicenter World Writeable SUID Shell Scripts
|
|
65381
Description:
(Description Provided by CVE) : Multiple unspecified vulnerabilities in the CA (1) PSFormX and (2) WebScan ActiveX controls, as distributed on the CA Global Advisor web site until May 2009, allow remote attackers to execute arbitrary code via unknown vectors.
|
2010-06-10
|
CA WebScan ActiveX Multiple Unspecified Arbitrary Code Execution
|
|
88172
Description:
CA XCOM Data Transport contains an unspecified flaw that may allow a remote attacker to execute arbitrary code. No further details have been provided.
|
2012-12-05
|
CA XCOM Data Transport Unspecified Remote Command Execution
|
|
63611
Description:
(Description Provided by CVE) : Multiple buffer overflows in CA XOsoft r12.0 and r12.5 allow remote attackers to execute arbitrary code via (1) a malformed request to the ws_man/xosoapapi.asmx SOAP endpoint or (2) a long string to the entry_point.aspx service.
|
2010-04-06
|
CA XOsoft entry_point.aspx Service String Handling Remote Overflow
|
|
63612
Description:
(Description Provided by CVE) : CA XOsoft r12.5 does not properly perform authentication, which allows remote attackers to obtain potentially sensitive information via a SOAP request.
|
2010-04-06
|
CA XOsoft SOAP Request Authentication Weakness Information Disclosure
|
|
63613
Description:
(Description Provided by CVE) : CA XOsoft r12.0 and r12.5 does not properly perform authentication, which allows remote attackers to enumerate usernames via a SOAP request.
|
2010-04-06
|
CA XOsoft SOAP Request Authentication Weakness Username Disclosure
|
|
63610
Description:
(Description Provided by CVE) : Multiple buffer overflows in CA XOsoft r12.0 and r12.5 allow remote attackers to execute arbitrary code via (1) a malformed request to the ws_man/xosoapapi.asmx SOAP endpoint or (2) a long string to the entry_point.aspx service.
|
2010-04-06
|
CA XOsoft ws_man/xosoapapi.asmx SOAP Endpoint Remote Overflow
|
|
26321
Description:
(Description Provided by CVE) : Cross-site scripting (XSS) vulnerability in Suchergebnisse.asp in Cabacos Web CMS 3.8.498 and earlier allows remote attackers to inject arbitrary web script or HTML via the suchtext parameter.
|
2006-06-10
|
Cabacos Web CMS Suchergebnisse.asp suchtext Parameter XSS
|
|
66955
Description:
(Description Provided by CVE) : The MS-ZIP decompressor in cabextract before 1.3 allows remote attackers to cause a denial of service (infinite loop) via a malformed MSZIP archive in a .cab file during a (1) test or (2) extract action, related to the libmspack library.
|
2010-07-30
|
cabextract MS-ZIP Decompressor Malformed MSZIP Archive Multiple Action Infinite Loop DoS
|
|
66957
Description:
(Description Provided by CVE) : Integer signedness error in the Quantum decompressor in cabextract before 1.3, when archive test mode is used, allows user-assisted remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted Quantum archive in a .cab file, related to the libmspack library.
|
2010-07-30
|
cabextract Quantum Decompressor Crafted Quantum Archive Integer Signedness DoS
|
|
10953
Description:
cabextract contains a flaw that allows a remote attacker to overwrite arbitrary files outside of the extraction path. The issue is due to the program not properly sanitizing cabinet files containing "./", "../", and ".." as part of the filename.
|
2004-10-18
|
cabextract Traversal Arbitrary File Overwrite
|