Vulnerability Details CVE-2005-3653
Heap-based buffer overflow in the iGateway service for various Computer Associates (CA) iTechnology products, in iTechnology iGateway before 4.0.051230, allows remote attackers to execute arbitrary code via an HTTP request with a negative Content-Length field.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.366
EPSS Ranking 96.9%
CVSS Severity
CVSS v2 Score 10.0
Products affected by CVE-2005-3653
-
cpe:2.3:a:broadcom:brightstor_arcserve_backup:11.1
-
cpe:2.3:a:broadcom:brightstor_arcserve_backup:11.5
-
cpe:2.3:a:broadcom:brightstor_arcserve_backup:9.01
-
cpe:2.3:a:broadcom:brightstor_arcserve_backup_laptops_desktops:11.0
-
cpe:2.3:a:broadcom:brightstor_arcserve_backup_laptops_desktops:11.1
-
cpe:2.3:a:broadcom:brightstor_portal:11.1
-
cpe:2.3:a:broadcom:brightstor_process_automation_manager:11.1
-
cpe:2.3:a:broadcom:brightstor_san_manager:11.1
-
cpe:2.3:a:broadcom:brightstor_san_manager:11.5
-
cpe:2.3:a:broadcom:brightstor_storage_resource_manager:11.1
-
cpe:2.3:a:broadcom:brightstor_storage_resource_manager:11.5
-
cpe:2.3:a:broadcom:brightstor_storage_resource_manager:6.3
-
cpe:2.3:a:broadcom:brightstor_storage_resource_manager:6.4
-
cpe:2.3:a:broadcom:etrust_admin:8.1
-
cpe:2.3:a:broadcom:etrust_audit_aries:8.0
-
cpe:2.3:a:broadcom:etrust_audit_irecorder:1.5
-
cpe:2.3:a:broadcom:etrust_audit_irecorder:8.0
-
cpe:2.3:a:broadcom:etrust_identity_minder:8.0
-
cpe:2.3:a:broadcom:etrust_integrated_threat_management:8.0
-
cpe:2.3:a:broadcom:itechnology_igateway:-
-
cpe:2.3:a:broadcom:itechnology_igateway:4.0.041221
-
cpe:2.3:a:broadcom:itechnology_igateway:4.0.050126
-
cpe:2.3:a:broadcom:itechnology_igateway:4.0.050224
-
cpe:2.3:a:broadcom:itechnology_igateway:4.0.050306
-
cpe:2.3:a:broadcom:itechnology_igateway:4.0.050321
-
cpe:2.3:a:broadcom:itechnology_igateway:4.0.050322
-
cpe:2.3:a:broadcom:itechnology_igateway:4.0.050325
-
cpe:2.3:a:broadcom:itechnology_igateway:4.0.050401
-
cpe:2.3:a:broadcom:itechnology_igateway:4.0.050413
-
cpe:2.3:a:broadcom:itechnology_igateway:4.0.050414
-
cpe:2.3:a:broadcom:itechnology_igateway:4.0.050518
-
cpe:2.3:a:broadcom:itechnology_igateway:4.0.050526
-
cpe:2.3:a:broadcom:itechnology_igateway:4.0.050601
-
cpe:2.3:a:broadcom:itechnology_igateway:4.0.050613
-
cpe:2.3:a:broadcom:itechnology_igateway:4.0.050615
-
cpe:2.3:a:broadcom:unicenter_asset_portfolio_management:11.0
-
cpe:2.3:a:broadcom:unicenter_autosys_jm:11.0
-
cpe:2.3:a:broadcom:unicenter_service_delivery:11.0
-
cpe:2.3:a:broadcom:unicenter_service_desk:11.0
-
cpe:2.3:a:broadcom:unicenter_service_desk_knowledge_tools:11.0
-
cpe:2.3:a:broadcom:unicenter_service_fulfillment:2.2
-
cpe:2.3:a:broadcom:unicenter_service_metric_analysis:11.0
-
cpe:2.3:a:ca:brightstor_arcserve_backup:11
-
cpe:2.3:a:ca:brightstor_enterprise_backup:10.0
-
cpe:2.3:a:ca:brightstor_enterprise_backup:10.5
-
cpe:2.3:a:ca:etrust_audit_aries:1.5
-
cpe:2.3:a:ca:etrust_directory:8.1_web_components
-
cpe:2.3:a:ca:etrust_secure_content_manager:8.0
-
cpe:2.3:a:ca:unicenter_application_performance_monitor:11.0
-
cpe:2.3:a:ca:unicenter_application_server_managment:11.0
-
cpe:2.3:a:ca:unicenter_ca_web_services_distributed_management:11.0
-
cpe:2.3:a:ca:unicenter_exchange_management_console:11.0
-
cpe:2.3:a:ca:unicenter_management:11.0
-
cpe:2.3:a:ca:unicenter_management:3.5
-
cpe:2.3:a:ca:unicenter_service_catalog_fulfillment_accounting:11.0
-
cpe:2.3:a:ca:unicenter_service_fulfillment:11.0
-
cpe:2.3:a:ca:unicenter_service_level_management:11.0
-
cpe:2.3:a:ca:unicenter_web_server_management:11.0
-
cpe:2.3:a:ca:unicenter_web_services_distributed_management:11.0