Unrated severityNVD Advisory· Published Jan 7, 2011· Updated Jun 16, 2026
CVE-2010-3984
CVE-2010-3984
Description
Buffer overflow in mng_core_com.dll in CA XOsoft Replication r12.0 SP1 and r12.5 SP2 rollup, CA XOsoft High Availability r12.0 SP1 and r12.5 SP2 rollup, CA XOsoft Content Distribution r12.0 SP1 and r12.5 SP2 rollup, and CA ARCserve Replication and High Availability (RHA) r15.0 SP1 allows remote attackers to execute arbitrary code via a crafted create_session_bab operation in a SOAP request to xosoapapi.asmx.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
10- cpe:2.3:a:ca:arcserve_replication_and_high_availability:r15.0:sp1:*:*:*:*:*:*
cpe:2.3:a:ca:xosoft_content_distribution:r12.0:sp1:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:ca:xosoft_content_distribution:r12.0:sp1:*:*:*:*:*:*
- cpe:2.3:a:ca:xosoft_content_distribution:r12.5:sp2:*:*:*:*:*:*
- (no CPE)range: <= r12.0 SP1, r12.5 SP2 rollup
cpe:2.3:a:ca:xosoft_high_availability:r12.0:sp1:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:ca:xosoft_high_availability:r12.0:sp1:*:*:*:*:*:*
- cpe:2.3:a:ca:xosoft_high_availability:r12.5:sp2:*:*:*:*:*:*
- (no CPE)range: <= r12.0 SP1, r12.5 SP2 rollup
cpe:2.3:a:ca:xosoft_replication:r12.0:sp1:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:ca:xosoft_replication:r12.0:sp1:*:*:*:*:*:*
- cpe:2.3:a:ca:xosoft_replication:r12.5:sp2:*:*:*:*:*:*
- (no CPE)range: <= r12.0 SP1, r12.5 SP2 rollup
Patches
Vulnerability mechanics
References
6News mentions
0No linked articles in our index yet.