| OSVDB ID | Disclosure Date | Title |
|
32722
Description:
CA eTrust Admin contains a flaw that may allow a malicious user to bypass authentication and gain privileges on the system. The issue is due to an unspecified error in the GINA password reset interface. This flaw may lead to unauthorized access resulting in a loss of confidentiality.
|
2007-03-08
|
CA eTrust Admin GINA Unspecified Remote Authentication Bypass
|
|
4865
Description:
eTrust Antivirus may allow a local attacker to gain elevated privileges. The issue is due to the program not properly checking command line input. If an attacker supplies a specially crafted command line argument, they may be able to trick it into running an arbitrary program with SYSTEM privilegs.
|
2002-11-18
|
CA eTrust Anti-Virus Unspecified Local Privilege Escalation
|
|
3963
Description:
eTrust Antivirus contains a flaw that may allow a remote attacker to bypass antivirus scans and infect a user. The issue is due to eTrust AV not properly scanning .zip files with password protected files. If an attacker created a specially crafted .zip file to send to a user, it may bypass detection and possibly infect the target.
|
2004-02-13
|
CA eTrust Anti-Virus Zip Archive Virus Detection Bypass
|
|
50768
Description:
(Description Provided by CVE) : CA eTrust Antivirus 31.6.6086, when Internet Explorer 6 or 7 is used, allows remote attackers to bypass detection of malware in an HTML document by placing an MZ header (aka "EXE info") at the beginning, and modifying the filename to have (1) no extension, (2) a .txt extension, or (3) a .jpg extension, as demonstrated by a document containing a CVE-2006-5745 exploit.
|
2008-12-09
|
CA eTrust Antivirus HTML Document MZ Header Multiple Filename Modification Malware Detection Bypass
|
|
27786
Description:
(Description Provided by CVE) : Unspecified vulnerability in CA eTrust Antivirus WebScan before 1.1.0.1048 has unknown impact and remote attackers related to "improper processing of outdated WebScan components."
|
2006-08-03
|
CA eTrust Antivirus WebScan ActiveX Control Crafted File Protection Weakness
|
|
27785
Description:
(Description Provided by CVE) : Unspecified vulnerability in CA eTrust Antivirus WebScan before 1.1.0.1048 allows remote attackers to install arbitrary files.
|
2006-08-03
|
CA eTrust Antivirus WebScan ActiveX Control Crafted File Update Subversion
|
|
27787
Description:
(Description Provided by CVE) : Unspecified vulnerability in CA eTrust Antivirus WebScan allows remote attackers to execute arbitrary code due to "improper bounds checking when processing certain user input."
|
2006-08-03
|
CA eTrust Antivirus WebScan ActiveX Control Update Manifest Processing Overflow
|
|
8059
Description:
Unknown / Incomplete
|
2004-07-19
|
CA eTrust Connection Saturation Transport Service DoS
|
|
11979
Description:
eTrust Antivirus contains a flaw that may allow a malicious user to bypass the password protection mechanism. The issue is caused by the displayed password in the GUI using star symbols being the actual password. It is possible that the flaw may allow the recovery of the actual password resulting in a loss of confidentiality.
|
2004-11-20
|
CA eTrust EZ Anti-Virus Password Protection Local Bypass
|
|
12407
Description:
(Description Provided by CVE) : Computer Associates eTrust EZ Antivirus 7.0.0 to 7.0.4, including 7.0.1.4, installs its files with insecure permissions (ACLs), which allows local users to gain privileges by replacing critical programs with malicious ones, as demonstrated using VetMsg.exe.
|
2004-12-15
|
CA eTrust EZ Anti-Virus VetMsg.exe Local Privilege Escalation
|
|
37698
Description:
CA eTrust Intrusion Detection contains a flaw that allows a malicious user to execute code in the context of the user. The issue is triggered when the caller.dll ActiveX control is scripted by a malicious website. It is possible that the flaw may allow arbitrary code execution resulting in a loss of integrity.
|
2007-07-24
|
CA eTrust Intrusion Detection CallCode ActiveX (caller.dll) Arbitrary Code Execution
|
|
15273
Description:
(Description Provided by CVE) : Computer Associates (CA) eTrust Intrusion Detection 3.0 allows remote attackers to cause a denial of service via large size values that are not properly validated before calling the CPImportKey function in the Crypto API.
|
2005-04-06
|
CA eTrust Intrusion Detection CPImportKey Function Overflow DoS
|
|
4866
Description:
eTrust contains a flaw that may lead to an unauthorized password exposure. It is possible to gain access to plaintext passwords by accessing a specific registry key and decoding the encrypted passwords, which may lead to a loss of integrity.
|
2000-06-07
|
CA eTrust Intrusion Detection Password Exposure
|
|
32290
Description:
CA eTrust Intrusion Detection contain a flaw that may allow a remote denial of service. The issue is due to the application failing to properly validate key length values during authentication and is triggered when a remote attacker sends a specially crafted packet containing a long key length value to the remote administration port (9191/TCP). This causes a heap-based buffer overflow in SW3eng.exe in the eID Engine, resulting in loss of availability for the service.
|
2007-02-27
|
CA eTrust Intrusion Detection SW3eng.exe Key Length Value Remote DoS
|
|
43482
Description:
(Description Provided by CVE) : The web console in CA (formerly Computer Associates) eTrust ITM (Threat Manager) 8.1 allows remote attackers to redirect users to arbitrary web sites via a crafted HTTP URL on port 6689.
|
2007-10-10
|
CA eTrust ITM (Threat Manager) Crafted URL Arbitrary Site Redirect
|
|
43487
Description:
(Description Provided by CVE) : CA (formerly Computer Associates) eTrust ITM (Threat Manager) 8.1 stores sensitive user information in log files with predictable names, which allows remote attackers to obtain this information via unspecified vectors.
|
2007-10-10
|
CA eTrust ITM (Threat Manager) Predictable Log File Remote Information Disclosure
|
|
8058
Description:
CA eTrust Common Services and Security Command Center contain a flaw that may allow a remote denial of service. The issue is triggered when a user sends a specialy crafted URL to the server, and will result in loss of availability for the portal service.
|
2004-07-19
|
CA eTrust Long URL Portal Service DoS
|
|
60862
Description:
(Description Provided by CVE) : Stack-based buffer overflow in the PestPatrol ActiveX control (ppctl.dll) 5.6.7.9 in CA eTrust PestPatrol allows remote attackers to execute arbitrary code via a long argument to the Initialize method.
|
2009-11-02
|
CA eTrust PestPatrol PestPatrol ActiveX (ppctl.dll) Initialize Method Overflow
|
|
40269
Description:
CA eTrust SiteMinder contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate SMAUTHREASON parameters upon submission to the 'smpwservices.fcc' script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2007-11-07
|
CA eTrust SiteMinder Agent forms/smpwservices.fcc SMAUTHREASON Parameter XSS
|
|
17810
Description:
(Description Provided by CVE) : Cross-site scripting (XSS) vulnerability in Computer Associates (CA) eTrust SiteMinder 5.5, when the "CSSChecking" parameter is set to "NO," allows remote attackers to inject arbitrary web script or HTML via the (1) PASSWORD or (2) BUFFER parameters to smpwservicescgi.exe, (3) the TARGET parameter to login.fcc, and possibly other vectors.
|
2005-07-08
|
CA eTrust SiteMinder login.fcc Arbitrary iframe Injection
|
|
17809
Description:
CA eTrust SiteMinder contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'PASSWORD' parameter, when the 'CSSChecking' parameter is set to "NO", upon submission to the smpwservicescgi.exe script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2005-07-08
|
CA eTrust SiteMinder smpwservicescgi.exe PASSWORD Parameter XSS
|
|
40109
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in CA (formerly Computer Associates) eTrust Threat Management Console allow remote attackers to inject arbitrary web script or HTML via the IP Address field and other unspecified fields.
|
2007-12-05
|
CA eTrust Threat Management Console IP Address Field XSS
|
|
74119
Description:
(Description Provided by CVE) : Icihttp.exe in CA Gateway Security for HTTP, as used in CA Gateway Security 8.1 before 8.1.0.69 and CA Total Defense r12, does not properly parse URLs, which allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption and daemon crash) via a malformed request.
|
2011-07-20
|
CA Gateway Security for HTTP Icihttp.exe URL Parsing Memory Corruption
|
|
57168
Description:
(Description Provided by CVE) : kmxIds.sys before 7.3.1.18 in CA Host-Based Intrusion Prevention System (HIPS) 8.1 allows remote attackers to cause a denial of service (system crash) via a malformed packet.
|
2009-08-18
|
CA Host-Based Intrusion Prevention System kmxIds.sys Crafted Packet Handling DoS
|
|
37998
Description:
(Description Provided by CVE) : Cross-site scripting (XSS) vulnerability in the Server component in CA Host-Based Intrusion Prevention System (HIPS) before 8.0.0.93 allows remote attackers to inject arbitrary web script or HTML via requests that are written to logs for later display in the log viewer.
|
2007-10-18
|
CA Host-Based Intrusion Prevention System Server Log Data XSS
|
|
19920
Description:
A remote overflow exists in Computer Associates iGateway. The application fails to perform proper bounds checking resulting in a buffer overflow. With a specially crafted HTTP GET request, a remote attacker can cause arbitrary code execution with SYSTEM privileges resulting in a loss of integrity.
|
2005-10-10
|
CA iGateway Debug Mode HTTP GET Request Overflow
|
|
22688
Description:
A remote overflow exists in iGateway. The web server fails to properly validate the Content-Length header, resulting in a buffer overflow. With a specially crafted request, an attacker can cause arbitrary code to be executed, resulting in a loss of integrity and/or availability.
|
2006-01-23
|
CA iGateway Service Content-Length Overflow
|
|
69518
Description:
CA Internet Security Suite Plus contains a flaw that may allow an attacker to gain access to unauthorized privileges. The issue is triggered when a pool corruption vulnerability in the handling of IOTCL 0x88000080 in the KmxSbx.sys kernel driver is exploited to cause a buffer overflow, allowing a local attacker to execute arbitrary code with elevated privileges.
|
2010-11-28
|
CA Internet Security Suite Plus KmxSbx.sys IOCTL Handling Local Overflow
|
|
45679
Description:
(Description Provided by CVE) : Directory traversal vulnerability in the UmxEventCli.CachedAuditDataList.1 (aka UmxEventCliLib) ActiveX control in UmxEventCli.dll in CA Internet Security Suite 2008 allows remote attackers to create and overwrite arbitrary files via a .. (dot dot) in the argument to the SaveToFile method. NOTE: this can be leveraged for code execution by writing to a Startup folder. NOTE: some of these details are obtained from third party information.
|
2008-05-28
|
CA Internet Security Suite UmxEventCli.CachedAuditDataList.1 ActiveX (UmxEventCli.dll) SaveToFile Method Arbitrary File Overwrite
|
|
57228
Description:
(Description Provided by CVE) : vetmonnt.sys in CA Internet Security Suite r3, vetmonnt.sys before 9.0.0.184 in Internet Security Suite r4, and vetmonnt.sys before 10.0.0.217 in Internet Security Suite r5 do not properly verify IOCTL calls, which allows local users to cause a denial of service (system crash) via a crafted call.
|
2009-08-18
|
CA Internet Security Suite vetmonnt.sys Crafted IOCTL Call Local DoS
|