Computer Associates XCOM Data Transport Remote Arbitrary Command Execution Vulnerability
BID:56824
Info
Computer Associates XCOM Data Transport Remote Arbitrary Command Execution Vulnerability
| Bugtraq ID: | 56824 |
| Class: | Design Error |
| CVE: |
CVE-2012-5973 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 05 2012 12:00AM |
| Updated: | Dec 06 2012 02:10PM |
| Credit: | Jurgens van der Merwe and Junaid Loonat from SensePost |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
Computer Associates XCOM Data Transport Remote Arbitrary Command Execution Vulnerability
Computer Associates XCOM Data Transport is prone to a remote arbitrary command-execution vulnerability because it fails to properly validate user-supplied input.
An attacker can exploit this issue to execute arbitrary commands within the context of the vulnerable application.
Computer Associates XCOM Data Transport is prone to a remote arbitrary command-execution vulnerability because it fails to properly validate user-supplied input.
An attacker can exploit this issue to execute arbitrary commands within the context of the vulnerable application.
Exploit / POC
Computer Associates XCOM Data Transport Remote Arbitrary Command Execution Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Computer Associates XCOM Data Transport Remote Arbitrary Command Execution Vulnerability
Solution:
Vendor updates are available. Please see the references for more information.
Solution:
Vendor updates are available. Please see the references for more information.
References
Computer Associates XCOM Data Transport Remote Arbitrary Command Execution Vulnerability
References:
References:
- Computer Associates Homepage (Computer Associates)