Core Security
info@coresecurity.com  | +1.617.399.6980 | Contact Us   Core Blog Core Blog Twitter LinkedIn youtube
SHARE

CORE IMPACT v7.5 - Exploits Update (Thu May 22 2008)

CA BrightStor ARCserve Backup ListCtrl Buffer Overflow Exploit

Exploits/Client Side  [Windows]




• Thu May 22 2008
This module exploits a vulnerability in the ListCtrl ActiveX Control (ListCtrl.ocx) used CA BrighStor ARCserve Backup. The exploit is triggered when a long string argument is processed by the AddColumn() method resulting in a stack-based buffer overflow. This module runs a malicious web site on the CORE IMPACT Console and waits for an unsuspecting user to trigger the exploit by connecting to the web site.

Exploits Vulnerabiltiy: CVE-2008-1472



< Back to Product Updates