Computer Associates XCOM Data Transport Remote Arbitrary Command Execution Vulnerability
31 Dec. 2012
Summary
Computer Associates XCOM Data Transport is prone to a remote arbitrary command-execution vulnerability because it fails to properly validate user-supplied input.
Credit:
The information has been provided by Jurgens van der Merwe and Junaid Loonat.
An attacker can exploit this issue to execute arbitrary commands within the context of the vulnerable application.CA XCOM Data Transport r11.0 and r11.5 on UNIX and Linux allows remote attackers to execute arbitrary commands via a crafted request.