Vulnerabilities
Vulnerable Software
Ca:  >> Gateway Security  >> 8.1  Security Vulnerabilities
Icihttp.exe in CA Gateway Security for HTTP, as used in CA Gateway Security 8.1 before 8.1.0.69 and CA Total Defense r12, does not properly parse URLs, which allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption and daemon crash) via a malformed request.
CVSS Score
10.0
EPSS Score
0.252
Published
2011-07-28
The eCS component (ECSQdmn.exe) in CA ETrust Secure Content Manager 8.0 and CA Gateway Security 8.1 allows remote attackers to cause a denial of service (crash) and execute arbitrary code via a crafted request to port 1882, involving an incorrect integer calculation and a heap-based buffer overflow.
CVSS Score
10.0
EPSS Score
0.221
Published
2011-02-10


Contact Us

Shodan ® - All rights reserved