← back
CVE-2006-6917

CVE-2006-6917

28Vexday Risk Score

No sign of exploitation. It has a public proof of concept.

ssvc Attendepss 29%
exploitation probability
29%top 2% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Multiple buffer overflows in Computer Associates (CA) BrightStor ARCserve Backup R11.5 Server before SP2 allows remote attackers to execute arbitrary code in the Tape Engine (tapeeng.exe) via a crafted RPC request with (1) opnum 38, which is not properly handled in TAPEUTIL.dll 11.5.3884.0, or (2) opnum 37, which is not properly handled in TAPEENG.dll 11.5.3884.0.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.