CVE Feed

    Dashboard / CVE / CVE-2008-1472

    CVE-2008-1472

    Stack-based buffer overflow in the ListCtrl ActiveX Control (ListCtrl.ocx), as used in multiple CA products including BrightStor ARCserve Backup R11.5, Desktop Management Suite r11.1 through r11.2, and Unicenter products r11.1 through r11.2, allows remote attackers to execute arbitrary code or cause a denial of service (crash) via a long argument to the AddColumn method.

    Published:Mar 24, 2008
    Last Modified:Apr 23, 2026
    EPS:Mar 24, 2008
    EPSS Score:0.76279
    CVSS Score:9.3

    Affected Products

    Vendor
    Computer Associates
    Product
    Brightstor Arcserve Backup Laptops Desktops
    Vendor
    Computer Associates
    Product
    Desktop Management Suite
    Vendor
    Computer Associates
    Product
    Unicenter Dsm R11 List Control Atx
    Vendor
    Unicenter
    Product
    Asset Management
    Vendor
    Unicenter
    Product
    Desktop Management Bundle
    Vendor
    Unicenter
    Product
    Remote Control
    Vendor
    Unicenter
    Product
    Software Delivery

    References

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High