Secunia Research has discovered a vulnerability in BrightStor ARCserve Backup, which can be exploited by malicious people to compromise a vulnerable system. The vulnerability is caused due to insufficient validation of “handle_t” arguments passed to RPC endpoints. Passing object pointers to procedures that expect different types can result in arbitrary code execution. CA ARCserve Backup 11.5 SP4 build 4491 is affected.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/72918/secunia-backup.txt
Source: https://packetstormsecurity.com/files/72918/CA-ARCserve-Backup-RPC-handle_t-Argument-Vulnerability.html

