Computer Associates Total Defense 'UNCSW' Service Remote Code Execution Vulnerability
BID:47356
Info
Computer Associates Total Defense 'UNCSW' Service Remote Code Execution Vulnerability
| Bugtraq ID: | 47356 |
| Class: | Design Error |
| CVE: |
CVE-2011-1655 |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 13 2011 12:00AM |
| Updated: | Apr 13 2011 12:00AM |
| Credit: | Andrea Micalizzi aka rgod |
| Vulnerable: | |
| Not Vulnerable: |
Computer Associates Total Defense 12 SE2 |
Discussion
Computer Associates Total Defense 'UNCSW' Service Remote Code Execution Vulnerability
Computer Associates Total Defense is prone to a remote code-execution vulnerability.
Successfully exploiting this issue will allow attackers to execute arbitrary code with elevated privileges, completely compromising affected computers. Failed exploit attempts will likely crash the affected 'UNCWS' service.
Total Defense r12 is vulnerable; other versions may also be affected.
Computer Associates Total Defense is prone to a remote code-execution vulnerability.
Successfully exploiting this issue will allow attackers to execute arbitrary code with elevated privileges, completely compromising affected computers. Failed exploit attempts will likely crash the affected 'UNCWS' service.
Total Defense r12 is vulnerable; other versions may also be affected.
Exploit / POC
Computer Associates Total Defense 'UNCSW' Service Remote Code Execution Vulnerability
Attackers can exploit this issue with readily available tools.
Attackers can exploit this issue with readily available tools.
Solution / Fix
Computer Associates Total Defense 'UNCSW' Service Remote Code Execution Vulnerability
Solution:
Updates are available; please see the references for more information.
Solution:
Updates are available; please see the references for more information.
References
Computer Associates Total Defense 'UNCSW' Service Remote Code Execution Vulnerability
References:
References:
- Computer Associates Homepage (Computer Associates)
- ZDI-11-127: CA Total Defense Suite UNCWS Web Service getDBConfigSettings Credent (ZDI Disclosures
) - CA20110413-01: Security Notice for CA Total Defense (Computer Associates)
- ZDI-11-127 CA Total Defense Suite UNCWS Web Service getDBConfigSettings Credenti (Zero Day Initiative)