CVE-2007-0449
Title: Broadcom Brightstor Arcserve Backup Laptops Desktops RCE
Memory Corruption
Proof Of Concept
PoC Available for CVE-2007-0449
CWE Category
CWE-119
Published Date
Jan 23, 2007
Modified Date
Jun 16, 2026
Exploit Status
Available
Score
10.0
CVSS v2.0
Exploit Probability (EPSS)
79.24%
Vulnerability Summary
CVE-2007-0449: Multiple buffer overflows in LGSERVER.EXE in CA BrightStor ARCserve Backup for Laptops and Desktops r11.0 through r11.1 SP1, Mobile Backup r4.0, Desktop and Business Protection Suite r2, and Desktop Management Suite (DMS) r11.0 and r11.1 allow remote attackers to execute arbitrary code via crafted packets to TCP port (1) 1900 or (2) 2200.
Impacted Vendors
Reference Links
http://secunia.com/advisories/23897
http://securitytracker.com/id?1017548
http://supportconnectw.ca.com/public/sams/lifeguard/infodocs/babldimpsec-notice.asp
http://www.kb.cert.org/vuls/id/357308
http://www.kb.cert.org/vuls/id/611276
http://www.osvdb.org/31593
http://www.securityfocus.com/archive/1/457945/30/8460/threaded
http://www.securityfocus.com/archive/1/458644/100/0/threaded
http://www.securityfocus.com/archive/1/458648/100/0/threaded
http://www.securityfocus.com/bid/22199
http://www.securityfocus.com/bid/22340
http://www.securityfocus.com/bid/22342
http://www.vupen.com/english/advisories/2007/0314
http://www3.ca.com/securityadvisor/newsinfo/collateral.aspx?cid=97696
http://www3.ca.com/securityadvisor/vulninfo/Vuln.aspx?ID=34993
https://exchange.xforce.ibmcloud.com/vulnerabilities/31704
http://secunia.com/advisories/23897
http://securitytracker.com/id?1017548
http://supportconnectw.ca.com/public/sams/lifeguard/infodocs/babldimpsec-notice.asp
http://www.kb.cert.org/vuls/id/357308
http://www.kb.cert.org/vuls/id/611276
http://www.osvdb.org/31593
http://www.securityfocus.com/archive/1/457945/30/8460/threaded
http://www.securityfocus.com/archive/1/458644/100/0/threaded
http://www.securityfocus.com/archive/1/458648/100/0/threaded
http://www.securityfocus.com/bid/22199
http://www.securityfocus.com/bid/22340
http://www.securityfocus.com/bid/22342
http://www.vupen.com/english/advisories/2007/0314
http://www3.ca.com/securityadvisor/newsinfo/collateral.aspx?cid=97696
http://www3.ca.com/securityadvisor/vulninfo/Vuln.aspx?ID=34993
https://exchange.xforce.ibmcloud.com/vulnerabilities/31704
CVSS v2.0
Source Entity
[email protected]
Severity
HIGH
10.0
Access Vector
N/A
Authentication
N/A
RAW VECTOR
AV:N/AC:L/Au:N/C:C/I:C/A:C
Associated Attack Patterns (CAPEC)
Total: PatternsNo specific attack patterns mapped.
Likelihood
Severity
Page /
CVE-2007-0449 Exploits & PoCs (Proof Of Concept)
MODIFIED
Vulnerability data updated via NVD.
MODIFIED
Vulnerability data or affected products updated.
PUBLISHED
Vulnerability first announced in NVD.
Attack Vector Matrix
Access Vector
N/A
Complexity
N/A
Privileges
N/A
Interaction
NONE
CVSS Vector String
AV:N/AC:L/Au:N/C:C/I:C/A:C
Affected Stack
No specific products linked.