cpe:/a:ca:antispyware_for_the_enterprise:8.0 cpe:/a:ca:etrust_integrated_threat_management:8.0 cpe:/a:ca:etrust_pestpatrol:8.0 CVE-2007-2522 2007-05-11T00:20:00.000-04:00 2017-07-28T21:31:31.470-04:00 10.0 NETWORK LOW NONE COMPLETE COMPLETE COMPLETE http://nvd.nist.gov 2007-05-11T09:23:00.000-04:00 ALLOWS_ADMIN_ACCESS SECTRACK 1018043 FULLDISC 20050711 [CAID 35330, 35331]: CA Anti-Virus, CA Threat Manager, and CA Anti-Spyware Console Login and File Mapping Vulnerabilities BUGTRAQ 20070511 ZDI-07-028: CA eTrust AntiVirus Server inoweb Buffer Overflow Vulnerability BID 23906 SECUNIA 25202 OSVDB 34585 VUPEN ADV-2007-1750 CERT-VN VU#680616 XF ca-console-server-bo(34204) CONFIRM http://supportconnectw.ca.com/public/antivirus/infodocs/caav-secnotice050807.asp MISC http://www.zerodayinitiative.com/advisories/ZDI-07-028.html Stack-based buffer overflow in the inoweb Console Server in CA Anti-Virus for the Enterprise r8, Threat Manager r8, Anti-Spyware for the Enterprise r8, and Protection Suites r3 allows remote attackers to execute arbitrary code via a long (1) username or (2) password.