A new remote code execution vulnerability on ARCServe Backup version 11.5 has been released today. The vulnerability exploits the handling of RPC requests on port 6502. Proof of concept code has been released to the public at this point. If you are running ARCServe, it's about time to patch now.
Jason Lam, jason /at/ networksec.org
Nov 22nd 2006
1 decade ago