Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Computer Associates Message Queuing CAFT Spoofing Vulnerability

CAM is prone to a vulnerability that could permit the spoofing of a CAFT application utilizing the CAM instance. This may ultimately allow the execution of arbitrary commands.

CAFT is a file transfer application that utilizes CAM to send and receive the files. The problem presents itself due to a failure in the CAM service to verify the legitimacy of the CAFT application. An attacker can spoof a legitimate CAFT instance and ultimately execute arbitrary CAM commands with elevated privileges.







 

Privacy Statement
Copyright 2008, SecurityFocus