CVE-2005-2668

Exp

Multiple buffer overflows in Computer Associates (CA) Message Queuing (CAM / CAFT) 1.05, 1.07 before Build 220_13, and 1.11 before Build 29_13 allow remote attackers to execute arbitrary code via unknown vectors.

Published: 2005-08-23 Last update: 2026-04-16 Assigner: [email protected] Source: [email protected]

Conclusion & alert: CVE-2005-2668 is rated High Exploit Risk (84.8/100): CVSS Critical severity, with high exploitation likelihood (EPSS 75.24%, 99th percentile). Core evidence: 1 public exploit reference(s) are indexed (Exploit-DB). Mandatory action: Public exploits are available—assess exposure, apply mitigations, and prioritize patching.

Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.

Public exploit references (Exploit-DB) for CVE-2005-2668

EDB-ID Source Kind Published Link
16825 exploit_db edb 2010-09-20 Exploit-DB ↗

Exploit prediction scoring system (EPSS) score for CVE-2005-2668

EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).

# Date Old EPSS score New EPSS score Delta (New - Old)
1 2026-06-15 82.85% 75.24% -7.61%
2 2025-07-26 81.49% 82.85% +1.36%
3 2025-03-30 81.49%

Full EPSS history (13 records total)

Common vulnerability scoring system (CVSS) metrics for CVE-2005-2668

CVSS metrics for this CVE.

Base score Version Severity Vector Exploitability Impact Score source
10.0 2.0 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C Click to expand
Access vector (AV:N)
Can be exploited remotely over network reachability.
Access complexity (AC:L)
Exploitation conditions are straightforward and predictable.
Authentication (AU:N)
No authentication is required.
Confidentiality impact (C:C)
Complete confidentiality impact.
Integrity impact (I:C)
Complete integrity impact.
Availability impact (A:C)
Complete availability impact.
10.0 10.0 [email protected]

Weakness enumeration for CVE-2005-2668

Affected software / configurations for CVE-2005-2668

Vendor Product Version Raw CPE
broadcom advantage_data_transport 3.0 cpe:2.3:a:broadcom:advantage_data_transport:3.0:*:*:*:*:*:*:*
broadcom adviseit 2.4 cpe:2.3:a:broadcom:adviseit:2.4:*:*:*:*:*:*:*
broadcom brightstor_portal 11.1 cpe:2.3:a:broadcom:brightstor_portal:11.1:*:*:*:*:*:*:*
broadcom brightstor_san_manager 1.1 cpe:2.3:a:broadcom:brightstor_san_manager:1.1:*:*:*:*:*:*:*
broadcom brightstor_san_manager 1.1 cpe:2.3:a:broadcom:brightstor_san_manager:1.1:sp1:*:*:*:*:*:*
broadcom brightstor_san_manager 1.1 cpe:2.3:a:broadcom:brightstor_san_manager:1.1:sp2:*:*:*:*:*:*
broadcom brightstor_san_manager 11.1 cpe:2.3:a:broadcom:brightstor_san_manager:11.1:*:*:*:*:*:*:*
broadcom cleverpath_aion 10.0 cpe:2.3:a:broadcom:cleverpath_aion:10.0:*:*:*:*:*:*:*
broadcom cleverpath_ecm 3.5 cpe:2.3:a:broadcom:cleverpath_ecm:3.5:*:*:*:*:*:*:*
broadcom cleverpath_olap 5.1 cpe:2.3:a:broadcom:cleverpath_olap:5.1:*:*:*:*:*:*:*
broadcom cleverpath_predictive_analysis_server 2.0 cpe:2.3:a:broadcom:cleverpath_predictive_analysis_server:2.0:*:*:*:*:*:*:*
broadcom cleverpath_predictive_analysis_server 3.0 cpe:2.3:a:broadcom:cleverpath_predictive_analysis_server:3.0:*:*:*:*:*:*:*
broadcom etrust_admin 8.0 cpe:2.3:a:broadcom:etrust_admin:8.0:*:*:*:*:*:*:*
broadcom etrust_admin 8.1 cpe:2.3:a:broadcom:etrust_admin:8.1:*:*:*:*:*:*:*
broadcom messaging 1.5 cpe:2.3:a:broadcom:messaging:1.5:*:*:*:*:*:*:*
broadcom messaging 1.7 cpe:2.3:a:broadcom:messaging:1.7:*:*:*:*:*:*:*
broadcom messaging 1.11 cpe:2.3:a:broadcom:messaging:1.11:*:*:*:*:*:*:*
broadcom unicenter_application_performance_monitor 3.0 cpe:2.3:a:broadcom:unicenter_application_performance_monitor:3.0:*:*:*:*:*:*:*
broadcom unicenter_application_performance_monitor 3.5 cpe:2.3:a:broadcom:unicenter_application_performance_monitor:3.5:*:*:*:*:*:*:*
broadcom unicenter_asset_management 3.1 cpe:2.3:a:broadcom:unicenter_asset_management:3.1:*:*:*:*:*:*:*
broadcom unicenter_asset_management 3.2 cpe:2.3:a:broadcom:unicenter_asset_management:3.2:*:*:*:*:*:*:*
broadcom unicenter_asset_management 3.2 cpe:2.3:a:broadcom:unicenter_asset_management:3.2:sp1:*:*:*:*:*:*
broadcom unicenter_asset_management 3.2 cpe:2.3:a:broadcom:unicenter_asset_management:3.2:sp2:*:*:*:*:*:*
broadcom unicenter_asset_management 4.0 cpe:2.3:a:broadcom:unicenter_asset_management:4.0:*:*:*:*:*:*:*
broadcom unicenter_data_transport_option 2.0 cpe:2.3:a:broadcom:unicenter_data_transport_option:2.0:*:*:*:*:*:*:*
broadcom unicenter_jasmine 3.0 cpe:2.3:a:broadcom:unicenter_jasmine:3.0:*:*:*:*:*:*:*
broadcom unicenter_management_portal 2.0 cpe:2.3:a:broadcom:unicenter_management_portal:2.0:*:*:*:*:*:*:*
broadcom unicenter_management_portal 3.1 cpe:2.3:a:broadcom:unicenter_management_portal:3.1:*:*:*:*:*:*:*
broadcom unicenter_network_and_systems_management 3.0 cpe:2.3:a:broadcom:unicenter_network_and_systems_management:3.0:*:*:*:*:*:*:*
broadcom unicenter_network_and_systems_management 3.1 cpe:2.3:a:broadcom:unicenter_network_and_systems_management:3.1:*:*:*:*:*:*:*
broadcom unicenter_nsm_wireless_network_management_option 3.0 cpe:2.3:a:broadcom:unicenter_nsm_wireless_network_management_option:3.0:*:*:*:*:*:*:*
broadcom unicenter_performance_management 2.4 cpe:2.3:a:broadcom:unicenter_performance_management:2.4:sp3:openvms:*:*:*:*:*
broadcom unicenter_remote_control 6.0 cpe:2.3:a:broadcom:unicenter_remote_control:6.0:*:*:*:*:*:*:*
broadcom unicenter_remote_control 6.0 cpe:2.3:a:broadcom:unicenter_remote_control:6.0:sp1:*:*:*:*:*:*
broadcom unicenter_service_level_management 3.0 cpe:2.3:a:broadcom:unicenter_service_level_management:3.0:*:*:*:*:*:*:*
broadcom unicenter_service_level_management 3.0.1 cpe:2.3:a:broadcom:unicenter_service_level_management:3.0.1:*:*:*:*:*:*:*
broadcom unicenter_service_level_management 3.0.2 cpe:2.3:a:broadcom:unicenter_service_level_management:3.0.2:*:*:*:*:*:*:*
broadcom unicenter_service_level_management 3.5 cpe:2.3:a:broadcom:unicenter_service_level_management:3.5:*:*:*:*:*:*:*
broadcom unicenter_software_delivery 3.0 cpe:2.3:a:broadcom:unicenter_software_delivery:3.0:*:*:*:*:*:*:*
broadcom unicenter_software_delivery 3.1 cpe:2.3:a:broadcom:unicenter_software_delivery:3.1:*:*:*:*:*:*:*
broadcom unicenter_software_delivery 3.1 cpe:2.3:a:broadcom:unicenter_software_delivery:3.1:sp1:*:*:*:*:*:*
broadcom unicenter_software_delivery 3.1 cpe:2.3:a:broadcom:unicenter_software_delivery:3.1:sp2:*:*:*:*:*:*
broadcom unicenter_software_delivery 4.0 cpe:2.3:a:broadcom:unicenter_software_delivery:4.0:*:*:*:*:*:*:*
broadcom unicenter_tng 2.1 cpe:2.3:a:broadcom:unicenter_tng:2.1:*:*:*:*:*:*:*
broadcom unicenter_tng 2.2 cpe:2.3:a:broadcom:unicenter_tng:2.2:*:*:*:*:*:*:*
broadcom unicenter_tng 2.4 cpe:2.3:a:broadcom:unicenter_tng:2.4:*:*:*:*:*:*:*
broadcom unicenter_tng 2.4.2 cpe:2.3:a:broadcom:unicenter_tng:2.4.2:*:*:*:*:*:*:*
ca etrust_admin 2.1 cpe:2.3:a:ca:etrust_admin:2.1:*:*:*:*:*:*:*
ca etrust_admin 2.4 cpe:2.3:a:ca:etrust_admin:2.4:*:*:*:*:*:*:*
ca etrust_admin 2.7 cpe:2.3:a:ca:etrust_admin:2.7:*:*:*:*:*:*:*
ca etrust_admin 2.9 cpe:2.3:a:ca:etrust_admin:2.9:*:*:*:*:*:*:*
ca unicenter_asset_management 4.0 cpe:2.3:a:ca:unicenter_asset_management:4.0:sp1:*:*:*:*:*:*
ca unicenter_enterprise_job_manager 1.0 cpe:2.3:a:ca:unicenter_enterprise_job_manager:1.0:sp1:*:*:*:*:*:*
ca unicenter_enterprise_job_manager 1.0 cpe:2.3:a:ca:unicenter_enterprise_job_manager:1.0:sp2:*:*:*:*:*:*
ca unicenter_management 3.5 cpe:2.3:a:ca:unicenter_management:3.5:*:websphere_mq:*:*:*:*:*
ca unicenter_management 4.0 cpe:2.3:a:ca:unicenter_management:4.0:*:lotus_notes_domino:*:*:*:*:*
ca unicenter_management 4.0 cpe:2.3:a:ca:unicenter_management:4.0:*:microsoft_exchange:*:*:*:*:*
ca unicenter_management 4.1 cpe:2.3:a:ca:unicenter_management:4.1:*:microsoft_exchange:*:*:*:*:*
ca unicenter_management 5.0 cpe:2.3:a:ca:unicenter_management:5.0:*:web_servers:*:*:*:*:*
ca unicenter_management 5.0.1 cpe:2.3:a:ca:unicenter_management:5.0.1:*:web_servers:*:*:*:*:*
ca unicenter_software_delivery 4.0 cpe:2.3:a:ca:unicenter_software_delivery:4.0:sp1:*:*:*:*:*:*
ca unicenter_tng 2.2 cpe:2.3:a:ca:unicenter_tng:2.2:*:*:ja:*:*:*:*

References for CVE-2005-2668

cvelogic Threat Intelligence