10

CVE-2005-2611

Exploit

VERITAS Backup Exec for Windows Servers 8.6 through 10.0, Backup Exec for NetWare Servers 9.0 and 9.1, and NetBackup for NetWare Media Server Option 4.5 through 5.1 uses a static password during authentication from the NDMP agent to the server, which allows remote attackers to read and write arbitrary files with the backup server.

Data is provided by the National Vulnerability Database (NVD)
Symantec VeritasBackup Exec Versionnetware_servers_9.0.4019
Symantec VeritasBackup Exec Versionnetware_servers_9.0.4170
Symantec VeritasBackup Exec Versionnetware_servers_9.0.4172
Symantec VeritasBackup Exec Versionnetware_servers_9.0.4174
Symantec VeritasBackup Exec Versionnetware_servers_9.0.4202
Symantec VeritasBackup Exec Versionnetware_servers_9.1.306
Symantec VeritasBackup Exec Versionnetware_servers_9.1.307
Symantec VeritasBackup Exec Versionnetware_servers_9.1.1067_.2
Symantec VeritasBackup Exec Versionnetware_servers_9.1.1067_.3
Symantec VeritasBackup Exec Versionnetware_servers_9.1.1127_.1
Symantec VeritasBackup Exec Versionnetware_servers_9.1.1151_.1
Symantec VeritasBackup Exec Versionnetware_servers_9.1.1152
Symantec VeritasBackup Exec Versionnetware_servers_9.1.1152_.4
Symantec VeritasBackup Exec Versionnetware_servers_9.1.1154
Symantec VeritasBackup Exec Versionnetware_servers_9.1.1156
Symantec VeritasBackup Exec Versionwindows_servers_8.6
Symantec VeritasBackup Exec Versionwindows_servers_9.0
Symantec VeritasBackup Exec Versionwindows_servers_9.0_rev._4367
Symantec VeritasBackup Exec Versionwindows_servers_9.0_rev._4367_sp1
Symantec VeritasBackup Exec Versionwindows_servers_9.0_rev._4454
Symantec VeritasBackup Exec Versionwindows_servers_9.0_rev._4454_sp1
Symantec VeritasBackup Exec Versionwindows_servers_9.1
Symantec VeritasBackup Exec Versionwindows_servers_9.1_rev._4691
Symantec VeritasBackup Exec Versionwindows_servers_9.1_rev._4691_sp2
Symantec VeritasBackup Exec Versionwindows_servers_10.0_rev._5484
Symantec VeritasBackup Exec Versionwindows_servers_10.0_rev._5484_sp1
Symantec VeritasBackup Exec Versionwindows_servers_10.0_rev._5520
Symantec VeritasBackup Exec Remote Agent Versionnetware_server
Symantec VeritasBackup Exec Remote Agent Versionunix_linux_server
Symantec VeritasBackup Exec Remote Agent Versionwindows_server
Symantec VeritasNetbackup Versionnetware_media_servers_4.5
Symantec VeritasNetbackup Versionnetware_media_servers_4.5_fp1
Symantec VeritasNetbackup Versionnetware_media_servers_4.5_fp2
Symantec VeritasNetbackup Versionnetware_media_servers_4.5_fp3
Symantec VeritasNetbackup Versionnetware_media_servers_4.5_fp4
Symantec VeritasNetbackup Versionnetware_media_servers_4.5_fp5
Symantec VeritasNetbackup Versionnetware_media_servers_4.5_fp6
Symantec VeritasNetbackup Versionnetware_media_servers_4.5_fp7
Symantec VeritasNetbackup Versionnetware_media_servers_4.5_fp8
Symantec VeritasNetbackup Versionnetware_media_servers_4.5_mp1
Symantec VeritasNetbackup Versionnetware_media_servers_4.5_mp2
Symantec VeritasNetbackup Versionnetware_media_servers_4.5_mp3
Symantec VeritasNetbackup Versionnetware_media_servers_4.5_mp4
Symantec VeritasNetbackup Versionnetware_media_servers_4.5_mp5
Symantec VeritasNetbackup Versionnetware_media_servers_4.5_mp6
Symantec VeritasNetbackup Versionnetware_media_servers_4.5_mp7
Symantec VeritasNetbackup Versionnetware_media_servers_4.5_mp8
Symantec VeritasNetbackup Versionnetware_media_servers_5.0
Symantec VeritasNetbackup Versionnetware_media_servers_5.0_mp1
Symantec VeritasNetbackup Versionnetware_media_servers_5.0_mp2
Symantec VeritasNetbackup Versionnetware_media_servers_5.0_mp3
Symantec VeritasNetbackup Versionnetware_media_servers_5.0_mp4
Symantec VeritasNetbackup Versionnetware_media_servers_5.0_mp5
Symantec VeritasNetbackup Versionnetware_media_servers_5.1
Symantec VeritasNetbackup Versionnetware_media_servers_5.1_mp1
Symantec VeritasNetbackup Versionnetware_media_servers_5.1_mp2
Symantec VeritasNetbackup Versionnetware_media_servers_5.1_mp3
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 78.9% 0.99
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C