← Vulnerability feed

Vulnerability record · CVE-2007-3334 · published 21 June 2007

CVE-2007-3334: Ca etrust secure content manager vulnerability

CCa · Etrust Secure Content Manager

Multiple heap-based buffer overflows in the (1) Communications Server (iigcc.exe) and (2) Data Access Server (iigcd.exe) components for Ingres Database Server 3.0.3, as used in CA (Computer Associates) products including eTrust Secure Content Manager r8 on Windows, allow remote attackers to execute arbitrary code via unknown vectors.

10.0 CVSS 2.0 High EPSS 10% · top 4.4%
10.0CVSS 2.0 base score
10%EPSS exploitation probability, 30 days
NoNot in CISA KEV
2Affected product versions listed by NVD
28References
16 Jun 2026Last modified by NVD

Description

Multiple heap-based buffer overflows in the (1) Communications Server (iigcc.exe) and (2) Data Access Server (iigcd.exe) components for Ingres Database Server 3.0.3, as used in CA (Computer Associates) products including eTrust Secure Content Manager r8 on Windows, allow remote attackers to execute arbitrary code via unknown vectors.

AV:N/AC:L/Au:N/C:C/I:C/A:C

Affected products

2 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2007-3334 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2011-0758Ca etrust secure content manager vulnerabilityThe eCS component (ECSQdmn.exe) in CA ETrust Secure Content Manager 8.0 and CA Gateway Security 8.1 allows remote attackers to cause a denial of serv…EPSS 8.2%10.0CVE-2008-2541Ca etrust secure content manager memory buffer overflow vulnerabilityMultiple stack-based buffer overflows in the HTTP Gateway Service (icihttp.exe) in CA eTrust Secure Content Manager 8.0 allow remote attackers to exe…EPSS 10%10.0CVE-2007-3336Ingres database server vulnerabilityMultiple "pointer overwrite" vulnerabilities in Ingres database server 2006 9.0.4, r3, 2.6, and 2.5, as used in multiple CA (formerly Computer Associ…EPSS 9.0%10.0CVE-2007-3338Ingres database server memory buffer overflow vulnerabilityMultiple stack-based buffer overflows in Ingres database server 2006 9.0.4, r3, 2.6, and 2.5, as used in multiple CA (Computer Associates) products, …EPSS 6.7%10.0CVE-2005-3653Broadcom brightstor arcserve backup memory buffer overflow vulnerabilityHeap-based buffer overflow in the iGateway service for various Computer Associates (CA) iTechnology products, in iTechnology iGateway before 4.0.0512…EPSS 19%10.0CVE-2005-1693Broadcom etrust antivirus vulnerabilityInteger overflow in Computer Associates Vet Antivirus library, as used by CA InoculateIT 6.0, eTrust Antivirus r6.0 through 7.1, eTrust Antivirus for…EPSS 6.9%9.3CVE-2009-3587Broadcom anti-virus vulnerabilityUnspecified vulnerability in the arclib component in the Anti-Virus engine in CA Anti-Virus for the Enterprise (formerly eTrust Antivirus) 7.1 throug…EPSS 7.6%9.3CVE-2007-2864CA Anti-Virus engine stack buffer overflow via crafted CAB fileThe Anti-Virus engine in multiple CA (Computer Associates) products before content update 30.6 has a stack-based buffer overflow triggered by a large…EPSS 50%analysed

Source: NIST National Vulnerability Database (record CVE-2007-3334), CISA KEV, FIRST EPSS (scores of 2026-09-29). This page is refreshed as NVD updates the record.