peter bassill · operator
$ cve CVE-2007-5082 JSON

CVE-2007-5082 EXPLOIT

10.0
HIGH · CVSS 2.0 · EPSS 63.5% (pctl 99)

Patch early

A public exploit exists.

Description

Multiple stack-based buffer overflows in Computer Associates (CA) BrightStor Hierarchical Storage Manager (HSM) before r11.6 allow remote attackers to execute arbitrary code via unspecified CsAgent service commands with certain opcodes, related to missing validation of a length parameter.

Scoring

CVSS10.0 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
EPSS63.46% — more likely to be exploited than 99% of all CVEs
WeaknessCWE-119
On CISA KEVno
Public exploityes
Published2007-10-01
Last modified2026-06-16

Affected (1)

VendorProduct
broadcombrightstor hierarchical storage manager

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD