|
|
|
|
| |
Credit:
The information has been provided by James K. Williams.
The original article can be found at: http://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=205147
|
| |
Vulnerable Systems:
* CA ARCserve Backup r11.5 Solaris
* CA ARCserve Backup r11.5 Tru64
* CA ARCserve Backup r11.5 HP-UX
* CA ARCserve Backup r11.5 AIX
Patch Availability:
* CA ARCserve Backup r11.5 Solaris: RO06786
* CA ARCserve Backup r11.5 Tru64: RO06788
* CA ARCserve Backup r11.5 HP-UX: RO06789
* CA ARCserve Backup r11.5 AIX: RO06791
Workaround:
As a workaround solution, disable the Apache HTTP Server with the "stopgui" command. To re-enable the server, run "startgui".
Stopping the Apache HTTP Server will prevent the ARCserve user from performing GUI operations. Most of the operations provided by the GUI can be accomplished via the command line.
Alternatively, restrict remote network access to reduce exposure.
CVE Information:
CVE-2004-0747
CVE-2003-0132
|
|
|
|
|