Secunia Logo
Netsikker nu! 2008
 
CA Unicenter Remote Control Privilege Escalation and Denial of Service
Secunia Advisory: SA10420
Release Date: 2003-12-12
Last Update: 2004-07-06
Popularity: 8,916 views

Critical:
Less critical
Impact: Privilege escalation
DoS
Where: From local network
Solution Status: Vendor Patch

Software:CA ControlIT 5.x
CA Unicenter Remote Control 5.x
CA Unicenter Remote Control 6.x

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2003-0996
CVE-2003-0997
CVE-2003-0998


Description:
Two vulnerabilities have been identified in CA Unicenter Remote Control and ControlIT, which can be exploited by malicious, local users to escalate their privileges and by malicious people to cause a Denial of Service.

According to CA, local users can use the help interface to escalate their privileges. No more information is available.

Unicenter Remote Control 6 is also vulnerable to a Denial of Service, which causes the URC host service to consume large amounts of CPU resources.

Affected software:
Unicenter Remote Control 5.2
Unicenter Remote Control Option 5.1
Unicenter Remote Control Option German Version 5.1
Unicenter Remote Control Option 5.0
Control IT Enterprise Edition 5.1
Control IT Enterprise Edition 5.0
Control IT Advanced Edition 5.0
Unicenter Remote Control 6.0

Solution:
Patches are available:

Unicenter Remote Control 5.2:
ftp://ftp.ca.com/CAproducts/unicenter/TNGRCO/nt/0204/qo48406/QO48406.CLZ
ftp://ftp.ca.com/CAproducts/unicenter/TNGRCO/nt/0204/qo48406/QO48406.CAZ

Unicenter Remote Control Option 5.1:
ftp://ftp.ca.com/CAproducts/unicenter/TNGRCO/nt/0011/qo48410/QO48410.CLZ
ftp://ftp.ca.com/CAproducts/unicenter/TNGRCO/nt/0011/qo48410/QO48410.CAZ

Unicenter Remote Control Option German Version 5.1:
ftp://ftp.ca.com/CAproducts/unicenter/TNGRCO/nt/0011/qo48411/QO48411.CLZ
ftp://ftp.ca.com/CAproducts/unicenter/TNGRCO/nt/0011/qo48411/QO48411.CAZ

Unicenter Remote Control Option 5.0:
ftp://ftp.ca.com/CAproducts/unicenter/TNGRCO/nt/0002/qo48412/QO48412.CLZ
ftp://ftp.ca.com/CAproducts/unicenter/TNGRCO/nt/0002/qo48412/QO48412.CAZ

ControlIT Enterprise Edition 5.1
ftp://ftp.ca.com/CAproducts/unicenter/controlitee/0102/qo48413/QO48413.CCH
ftp://ftp.ca.com/CAproducts/unicenter/controlitee/0102/qo48413/QO48413.CAZ

ControlIT Enterprise Edition 5.0:
ftp://ftp.ca.com/CAproducts/unicenter/controlitee/9910/qo48415/QO48415.CCH
ftp://ftp.ca.com/CAproducts/unicenter/controlitee/9910/qo48415/QO48415.CAZ

ControlIT Advanced Edition 5.0:
ftp://ftp.ca.com/CAproducts/unicenter/controlitae/9909/qo48416/QO48416.CLY
ftp://ftp.ca.com/CAproducts/unicenter/controlitae/9909/qo48416/QO48416.CAZ

Unicenter Remote Control 6.0:
ftp://ftp.ca.com/CAproducts/unicenter/TNGRCO/nt/0306/qo48417/QO48417.CLZ
ftp://ftp.ca.com/CAproducts/unicenter/TNGRCO/nt/0306/qo48417/QO48417.CAZ

Changelog:
2004-06-07: Added CVE references.

Original Advisory:
Important Security Notice Unicenter Remote Control and ControlIT
http://support.ca.com/techbases/rp/urc5x-secnote.html
http://support.ca.com/techbases/rp/urc6x-secnote.html


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. phpBB Multiple Vulnerabilities // 38 views
2. My PHP Indexer "d" File Disclosure Vulnerability // 38 views
3. GForge Multiple SQL Injection Vulnerabilities // 27 views
4. chm2pdf Insecure Temporary Directories // 24 views
5. ScriptsEz Mini Hosting Panel "dir" File Disclosure // 23 views
6. NewLife Blogger "nlb3" SQL Injection Vulnerability // 23 views
7. Joomla Ignite Gallery Component "gallery" SQL Injection // 23 views
8. WinFTP "PASV" Denial of Service Vulnerability // 22 views
9. GuildFTPd "LIST" Processing Buffer Overflow Vulnerability // 21 views
10. Real Estates Classifieds "cat" SQL Injection Vulnerability // 21 views