CA BrightStor Backup 11.5.2.0 (Mediasvr.exe) Remote Code Exploit

RPC関係の脆弱性でリモートからコードが実行できるそうです。

# There seems to be an design error in the handling of RPC data with xdr procedures
# across several .dll's imported by Mediasvr.exe. Four bytes from an RPC packet are
# processed as a particular address (xdr_handle_t data which is run through multiple bit
# shifts, and reversing of bytes), and eventually loaded into ECX.