>> CA Multiple Product Alert Notification Server Buffer Overflow Vulnerabilities
Title : CA Multiple Product Alert Notification Server Buffer Overflow Vulnerabilities VUPEN ID : VUPEN/ADV-2008-1103 CVE ID : CVE-2007-4620
Rated as : Moderate Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2008-04-03
Technical Description
Multiple vulnerabilities have been identified in various CA products, which could be exploited by malicious users to cause a denial of service or take complete control of an affected system. These issues are caused by buffer overflow errors in various procedures within the Alert Notification Server service (Alert.exe), which could be exploited by remote authenticated attackers to crash an affected application or execute arbitrary code via a specially crafted request.