{"api_version":"1","generated_at":"2026-07-23T10:30:33+00:00","cve":"CVE-2010-3984","urls":{"html":"https://cve.report/CVE-2010-3984","api":"https://cve.report/api/cve/CVE-2010-3984.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2010-3984","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2010-3984"},"summary":{"title":"CVE-2010-3984","description":"Buffer overflow in mng_core_com.dll in CA XOsoft Replication r12.0 SP1 and r12.5 SP2 rollup, CA XOsoft High Availability r12.0 SP1 and r12.5 SP2 rollup, CA XOsoft Content Distribution r12.0 SP1 and r12.5 SP2 rollup, and CA ARCserve Replication and High Availability (RHA) r15.0 SP1 allows remote attackers to execute arbitrary code via a crafted create_session_bab operation in a SOAP request to xosoapapi.asmx.","state":"PUBLISHED","assigner":"mitre","published_at":"2011-01-07 23:00:19","updated_at":"2026-04-29 01:13:23"},"problem_types":["CWE-119","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"7.5","severity":"","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"}}],"references":[{"url":"http://www.securityfocus.com/archive/1/515115/100/0/threaded","name":"http://www.securityfocus.com/archive/1/515115/100/0/threaded","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityFocus","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/42561","name":"http://secunia.com/advisories/42561","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"CA ARCserve and XOsoft Products SOAP Request Processing Buffer Overflow - Secunia.com","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/45317","name":"http://www.securityfocus.com/bid/45317","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Computer Associates XOsoft SOAP Request Remote Buffer Overflow Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://www.zerodayinitiative.com/advisories/ZDI-10-263/","name":"http://www.zerodayinitiative.com/advisories/ZDI-10-263/","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Zero Day Initiative","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=%7bFEB41CE8-5023-46DF-B257-5299F492BF23%7d","name":"https://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=%7bFEB41CE8-5023-46DF-B257-5299F492BF23%7d","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"404 Not Found","mime":"text/html","httpstatus":"404","archivestatus":"404"},{"url":"http://www.securitytracker.com/id?1024852","name":"http://www.securitytracker.com/id?1024852","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityTracker.com Archives - CA XOsoft Buffer Overflow in Processing SOAP Requests Lets Remote Users Execute Arbitrary Code","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2010-3984","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2010-3984","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2010","cve_id":"3984","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ca","cpe5":"arcserve_replication_and_high_availability","cpe6":"r15.0","cpe7":"sp1","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2010","cve_id":"3984","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ca","cpe5":"xosoft_content_distribution","cpe6":"r12.0","cpe7":"sp1","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2010","cve_id":"3984","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ca","cpe5":"xosoft_content_distribution","cpe6":"r12.5","cpe7":"sp2","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2010","cve_id":"3984","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ca","cpe5":"xosoft_high_availability","cpe6":"r12.0","cpe7":"sp1","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2010","cve_id":"3984","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ca","cpe5":"xosoft_high_availability","cpe6":"r12.5","cpe7":"sp2","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2010","cve_id":"3984","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ca","cpe5":"xosoft_replication","cpe6":"r12.0","cpe7":"sp1","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2010","cve_id":"3984","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ca","cpe5":"xosoft_replication","cpe6":"r12.5","cpe7":"sp2","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T03:26:12.329Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"42561","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/42561"},{"tags":["x_refsource_MISC","x_transferred"],"url":"http://www.zerodayinitiative.com/advisories/ZDI-10-263/"},{"name":"20101209 CA20101209-01: Security Notice for CA XOsoft","tags":["mailing-list","x_refsource_BUGTRAQ","x_transferred"],"url":"http://www.securityfocus.com/archive/1/515115/100/0/threaded"},{"name":"45317","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/45317"},{"name":"1024852","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://www.securitytracker.com/id?1024852"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"https://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=%7bFEB41CE8-5023-46DF-B257-5299F492BF23%7d"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2010-12-09T00:00:00.000Z","descriptions":[{"lang":"en","value":"Buffer overflow in mng_core_com.dll in CA XOsoft Replication r12.0 SP1 and r12.5 SP2 rollup, CA XOsoft High Availability r12.0 SP1 and r12.5 SP2 rollup, CA XOsoft Content Distribution r12.0 SP1 and r12.5 SP2 rollup, and CA ARCserve Replication and High Availability (RHA) r15.0 SP1 allows remote attackers to execute arbitrary code via a crafted create_session_bab operation in a SOAP request to xosoapapi.asmx."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2018-10-10T18:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"42561","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/42561"},{"tags":["x_refsource_MISC"],"url":"http://www.zerodayinitiative.com/advisories/ZDI-10-263/"},{"name":"20101209 CA20101209-01: Security Notice for CA XOsoft","tags":["mailing-list","x_refsource_BUGTRAQ"],"url":"http://www.securityfocus.com/archive/1/515115/100/0/threaded"},{"name":"45317","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/45317"},{"name":"1024852","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://www.securitytracker.com/id?1024852"},{"tags":["x_refsource_CONFIRM"],"url":"https://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=%7bFEB41CE8-5023-46DF-B257-5299F492BF23%7d"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2010-3984","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Buffer overflow in mng_core_com.dll in CA XOsoft Replication r12.0 SP1 and r12.5 SP2 rollup, CA XOsoft High Availability r12.0 SP1 and r12.5 SP2 rollup, CA XOsoft Content Distribution r12.0 SP1 and r12.5 SP2 rollup, and CA ARCserve Replication and High Availability (RHA) r15.0 SP1 allows remote attackers to execute arbitrary code via a crafted create_session_bab operation in a SOAP request to xosoapapi.asmx."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"42561","refsource":"SECUNIA","url":"http://secunia.com/advisories/42561"},{"name":"http://www.zerodayinitiative.com/advisories/ZDI-10-263/","refsource":"MISC","url":"http://www.zerodayinitiative.com/advisories/ZDI-10-263/"},{"name":"20101209 CA20101209-01: Security Notice for CA XOsoft","refsource":"BUGTRAQ","url":"http://www.securityfocus.com/archive/1/515115/100/0/threaded"},{"name":"45317","refsource":"BID","url":"http://www.securityfocus.com/bid/45317"},{"name":"1024852","refsource":"SECTRACK","url":"http://www.securitytracker.com/id?1024852"},{"name":"https://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=%7bFEB41CE8-5023-46DF-B257-5299F492BF23%7d","refsource":"CONFIRM","url":"https://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=%7bFEB41CE8-5023-46DF-B257-5299F492BF23%7d"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2010-3984","datePublished":"2011-01-07T22:00:00.000Z","dateReserved":"2010-10-18T00:00:00.000Z","dateUpdated":"2024-08-07T03:26:12.329Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2011-01-07 23:00:19","lastModifiedDate":"2026-04-29 01:13:23","problem_types":["CWE-119","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ca:arcserve_replication_and_high_availability:r15.0:sp1:*:*:*:*:*:*","matchCriteriaId":"EF05232F-A8EC-4EFF-A3F8-1B22387A5E57"},{"vulnerable":true,"criteria":"cpe:2.3:a:ca:xosoft_content_distribution:r12.0:sp1:*:*:*:*:*:*","matchCriteriaId":"BC02D19D-AB8C-44F1-8990-7A9528771C3B"},{"vulnerable":true,"criteria":"cpe:2.3:a:ca:xosoft_content_distribution:r12.5:sp2:*:*:*:*:*:*","matchCriteriaId":"A4D1FAB5-AC5B-4144-98F6-328F2647DDD3"},{"vulnerable":true,"criteria":"cpe:2.3:a:ca:xosoft_high_availability:r12.0:sp1:*:*:*:*:*:*","matchCriteriaId":"EA91F248-8791-4586-B063-1AFA20DACC68"},{"vulnerable":true,"criteria":"cpe:2.3:a:ca:xosoft_high_availability:r12.5:sp2:*:*:*:*:*:*","matchCriteriaId":"F1AC1B03-3698-4744-A71C-B529E09B494E"},{"vulnerable":true,"criteria":"cpe:2.3:a:ca:xosoft_replication:r12.0:sp1:*:*:*:*:*:*","matchCriteriaId":"89CEAA53-1BC8-4AB9-BE1A-182C99EABEB8"},{"vulnerable":true,"criteria":"cpe:2.3:a:ca:xosoft_replication:r12.5:sp2:*:*:*:*:*:*","matchCriteriaId":"6207F39D-92E6-440F-849D-692E39CCD9EE"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2010","CveId":"3984","Ordinal":"1","Title":"CVE-2010-3984","CVE":"CVE-2010-3984","Year":"2010"},"notes":[{"CveYear":"2010","CveId":"3984","Ordinal":"1","NoteData":"Buffer overflow in mng_core_com.dll in CA XOsoft Replication r12.0 SP1 and r12.5 SP2 rollup, CA XOsoft High Availability r12.0 SP1 and r12.5 SP2 rollup, CA XOsoft Content Distribution r12.0 SP1 and r12.5 SP2 rollup, and CA ARCserve Replication and High Availability (RHA) r15.0 SP1 allows remote attackers to execute arbitrary code via a crafted create_session_bab operation in a SOAP request to xosoapapi.asmx.","Type":"Description","Title":"CVE-2010-3984"},{"CveYear":"2010","CveId":"3984","Ordinal":"2","NoteData":"2011-01-07","Type":"Other","Title":"Published"},{"CveYear":"2010","CveId":"3984","Ordinal":"3","NoteData":"2018-10-10","Type":"Other","Title":"Modified"}]}}}