Arcserve UDP prior to 9.2 contained a vulnerability in the com.ca.arcflash.rps.webservice.RPSService4CPMImpl interface. A routine exists that allows an attacker to upload and execute arbitrary files.
References
Link Resource
https://www.tenable.com/security/research/tra-2023-37 Exploit Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: tenable

Published: 2023-11-27T16:50:48.279Z

Updated: 2023-11-27T16:50:48.279Z

Reserved: 2023-09-06T18:06:47.116Z


Link: CVE-2023-41998

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-11-27T17:15:07.803

Modified: 2023-12-02T04:34:00.220


Link: CVE-2023-41998

JSON object: View

cve-icon Redhat Information

No data.

CWE