CVE-2011-2667 in Broadcom and CA Technologies Products
Published on July 28, 2011
Icihttp.exe in CA Gateway Security for HTTP, as used in CA Gateway Security 8.1 before 8.1.0.69 and CA Total Defense r12, does not properly parse URLs, which allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption and daemon crash) via a malformed request.
Products Associated with CVE-2011-2667
stack.watch emails you whenever new vulnerabilities are published in Broadcom Total Defense or CA Technologies Gateway Security. Just hit a watch button to start following.
Exploit Probability
EPSS
25.24%
Percentile
96.11%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.