CVE Feed

    Dashboard / CVE / CVE-2005-3653

    CVE-2005-3653

    Heap-based buffer overflow in the iGateway service for various Computer Associates (CA) iTechnology products, in iTechnology iGateway before 4.0.051230, allows remote attackers to execute arbitrary code via an HTTP request with a negative Content-Length field.

    Published:Dec 31, 2005
    Last Modified:Apr 16, 2026
    EPS:Jan 23, 2006
    EPSS Score:0.30442
    CVSS Score:10

    Affected Products

    Vendor
    Broadcom
    Product
    Brightstor Arcserve Backup
    Vendor
    Broadcom
    Product
    Brightstor Arcserve Backup Laptops Desktops
    Vendor
    Broadcom
    Product
    Brightstor Portal
    Vendor
    Broadcom
    Product
    Brightstor Process Automation Manager
    Vendor
    Broadcom
    Product
    Brightstor San Manager
    Vendor
    Broadcom
    Product
    Brightstor Storage Resource Manager
    Vendor
    Broadcom
    Product
    Etrust Admin
    Vendor
    Broadcom
    Product
    Etrust Audit Aries
    Vendor
    Broadcom
    Product
    Etrust Audit Irecorder
    Vendor
    Broadcom
    Product
    Etrust Identity Minder
    Vendor
    Broadcom
    Product
    Etrust Integrated Threat Management
    Vendor
    Broadcom
    Product
    Itechnology Igateway
    Vendor
    Broadcom
    Product
    Unicenter Asset Portfolio Management
    Vendor
    Broadcom
    Product
    Unicenter Autosys Jm
    Vendor
    Broadcom
    Product
    Unicenter Service Delivery
    Vendor
    Broadcom
    Product
    Unicenter Service Desk
    Vendor
    Broadcom
    Product
    Unicenter Service Desk Knowledge Tools
    Vendor
    Broadcom
    Product
    Unicenter Service Fulfillment
    Vendor
    Broadcom
    Product
    Unicenter Service Metric Analysis
    Vendor
    Ca
    Product
    Brightstor Arcserve Backup
    Vendor
    Ca
    Product
    Brightstor Enterprise Backup
    Vendor
    Ca
    Product
    Etrust Audit Aries
    Vendor
    Ca
    Product
    Etrust Directory
    Vendor
    Ca
    Product
    Etrust Secure Content Manager
    Vendor
    Ca
    Product
    Unicenter Application Performance Monitor
    Vendor
    Ca
    Product
    Unicenter Application Server Managment
    Vendor
    Ca
    Product
    Unicenter Ca Web Services Distributed Management
    Vendor
    Ca
    Product
    Unicenter Exchange Management Console
    Vendor
    Ca
    Product
    Unicenter Management
    Vendor
    Ca
    Product
    Unicenter Service Catalog Fulfillment Accounting
    Vendor
    Ca
    Product
    Unicenter Service Fulfillment
    Vendor
    Ca
    Product
    Unicenter Service Level Management
    Vendor
    Ca
    Product
    Unicenter Web Server Management
    Vendor
    Ca
    Product
    Unicenter Web Services Distributed Management

    Exploits

    No exploit reference

    Related CVEs

    References

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High