{ "id": "CVE-2005-0773", "sourceIdentifier": "cve@mitre.org", "published": "2005-06-18T04:00:00.000", "lastModified": "2024-11-20T23:55:52.153", "vulnStatus": "Modified", "cveTags": [], "descriptions": [ { "lang": "en", "value": "Stack-based buffer overflow in VERITAS Backup Exec Remote Agent 9.0 through 10.0 for Windows, and 9.0.4019 through 9.1.307 for Netware allows remote attackers to execute arbitrary code via a CONNECT_CLIENT_AUTH request with authentication method type 3 (Windows credentials) and a long password argument." } ], "metrics": { "cvssMetricV2": [ { "source": "nvd@nist.gov", "type": "Primary", "cvssData": { "version": "2.0", "vectorString": "AV:N/AC:L/Au:N/C:P/I:P/A:P", "baseScore": 7.5, "accessVector": "NETWORK", "accessComplexity": "LOW", "authentication": "NONE", "confidentialityImpact": "PARTIAL", "integrityImpact": "PARTIAL", "availabilityImpact": "PARTIAL" }, "baseSeverity": "HIGH", "exploitabilityScore": 10.0, "impactScore": 6.4, "acInsufInfo": false, "obtainAllPrivilege": false, "obtainUserPrivilege": true, "obtainOtherPrivilege": false, "userInteractionRequired": false } ] }, "weaknesses": [ { "source": "nvd@nist.gov", "type": "Primary", "description": [ { "lang": "en", "value": "NVD-CWE-Other" } ] } ], "configurations": [ { "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:a:symantec_veritas:backup_exec:9.0.4019:*:*:*:*:*:*:*", "matchCriteriaId": "1D53EB23-4971-408E-A43F-009698C403A4" }, { "vulnerable": true, "criteria": "cpe:2.3:a:symantec_veritas:backup_exec:9.0.4170:*:*:*:*:*:*:*", "matchCriteriaId": "2F763B05-25F3-42B6-A90E-2454910B6AB6" }, { "vulnerable": true, "criteria": "cpe:2.3:a:symantec_veritas:backup_exec:9.0.4172:*:*:*:*:*:*:*", "matchCriteriaId": "E4609B0F-3F5C-464E-92B1-ED6AF3C4FB75" }, { "vulnerable": true, "criteria": "cpe:2.3:a:symantec_veritas:backup_exec:9.0.4174:*:*:*:*:*:*:*", "matchCriteriaId": "67D899BF-F90C-43AD-8C17-CF59EE116BCE" }, { "vulnerable": true, "criteria": "cpe:2.3:a:symantec_veritas:backup_exec:9.0.4202:*:*:*:*:*:*:*", "matchCriteriaId": "EB1DD40C-E044-45D7-919E-6DC0749FEF0B" }, { "vulnerable": true, "criteria": "cpe:2.3:a:symantec_veritas:backup_exec:9.0_rev.4367:*:*:*:*:*:*:*", "matchCriteriaId": "7BAD90A9-B5AA-4D6A-9207-2A302BD2774C" }, { "vulnerable": true, "criteria": "cpe:2.3:a:symantec_veritas:backup_exec:9.0_rev.4367_sp1:*:*:*:*:*:*:*", "matchCriteriaId": "84F669C0-D20D-49B1-A486-6DE6FF8A186F" }, { "vulnerable": true, "criteria": "cpe:2.3:a:symantec_veritas:backup_exec:9.0_rev.4454:*:*:*:*:*:*:*", "matchCriteriaId": "555367EF-249E-4310-8A06-E59947D33576" }, { "vulnerable": true, "criteria": "cpe:2.3:a:symantec_veritas:backup_exec:9.0_rev.4454_sp1:*:*:*:*:*:*:*", "matchCriteriaId": "6B53EE99-ACFE-42FD-BA9A-379913E4D329" }, { "vulnerable": true, "criteria": "cpe:2.3:a:symantec_veritas:backup_exec:9.1.306:*:*:*:*:*:*:*", "matchCriteriaId": "1C1CD60F-847D-41D1-96C2-993E894F3EB2" }, { "vulnerable": true, "criteria": "cpe:2.3:a:symantec_veritas:backup_exec:9.1.307:*:*:*:*:*:*:*", "matchCriteriaId": "376EA812-8D27-4321-96CC-36848FE8856D" }, { "vulnerable": true, "criteria": "cpe:2.3:a:symantec_veritas:backup_exec:9.1.1067.2:*:*:*:*:*:*:*", "matchCriteriaId": "571BAEAC-E97D-4127-8C44-00206714587A" }, { "vulnerable": true, "criteria": "cpe:2.3:a:symantec_veritas:backup_exec:9.1.1067.3:*:*:*:*:*:*:*", "matchCriteriaId": "0D17C351-CC27-4F3C-8024-0D7461534797" }, { "vulnerable": true, "criteria": "cpe:2.3:a:symantec_veritas:backup_exec:9.1.1127.1:*:*:*:*:*:*:*", "matchCriteriaId": "EA711692-B9F2-4898-998D-7916C6572EA2" }, { "vulnerable": true, "criteria": "cpe:2.3:a:symantec_veritas:backup_exec:9.1.1151.1:*:*:*:*:*:*:*", "matchCriteriaId": "25B4C81C-2706-461F-9516-A4CB055FE865" }, { "vulnerable": true, "criteria": "cpe:2.3:a:symantec_veritas:backup_exec:9.1.1152:*:*:*:*:*:*:*", "matchCriteriaId": "183AE69A-BFCA-4AA4-AB08-18189AF7EE2A" }, { "vulnerable": true, "criteria": "cpe:2.3:a:symantec_veritas:backup_exec:9.1.1152.4:*:*:*:*:*:*:*", "matchCriteriaId": "2301AB87-1080-4C9E-81EC-91040AF882A1" }, { "vulnerable": true, "criteria": "cpe:2.3:a:symantec_veritas:backup_exec:9.1.1154:*:*:*:*:*:*:*", "matchCriteriaId": "B312041E-57BE-48EF-B1FD-8F8B85D5AC89" }, { "vulnerable": true, "criteria": "cpe:2.3:a:symantec_veritas:backup_exec:9.1_rev.4691:*:*:*:*:*:*:*", "matchCriteriaId": "9B969FA8-F5F8-4C34-A99F-1630EAD4EA18" }, { "vulnerable": true, "criteria": "cpe:2.3:a:symantec_veritas:backup_exec:9.1_rev.4691_sp2:*:*:*:*:*:*:*", "matchCriteriaId": "2FD59ED0-F1FD-42BD-9078-3A603FC4B899" }, { "vulnerable": true, "criteria": "cpe:2.3:a:symantec_veritas:backup_exec:10.0_rev.5484:*:*:*:*:*:*:*", "matchCriteriaId": "15FFFB18-9F1D-4630-BD13-0F34A1D6E5D6" }, { "vulnerable": true, "criteria": "cpe:2.3:a:symantec_veritas:backup_exec:10.0_rev.5484_sp1:*:*:*:*:*:*:*", "matchCriteriaId": "52E569BF-72BD-49DE-8946-E575C677F06B" } ] } ] } ], "references": [ { "url": "http://secunia.com/advisories/15789", "source": "cve@mitre.org", "tags": [ "Patch", "Vendor Advisory" ] }, { "url": "http://securitytracker.com/id?1014273", "source": "cve@mitre.org", "tags": [ "Patch" ] }, { "url": "http://seer.support.veritas.com/docs/276604.htm", "source": "cve@mitre.org", "tags": [ "Patch", "Vendor Advisory" ] }, { "url": "http://seer.support.veritas.com/docs/277429.htm", "source": "cve@mitre.org", "tags": [ "Patch" ] }, { "url": "http://www.idefense.com/application/poi/display?id=272&type=vulnerabilities&flashstatus=true", "source": "cve@mitre.org", "tags": [ "Vendor Advisory" ] }, { "url": "http://www.kb.cert.org/vuls/id/492105", "source": "cve@mitre.org", "tags": [ "Patch", "Third Party Advisory", "US Government Resource" ] }, { "url": "http://www.osvdb.org/17624", "source": "cve@mitre.org" }, { "url": "http://www.securityfocus.com/bid/14022", "source": "cve@mitre.org", "tags": [ "Exploit", "Patch" ] }, { "url": "http://www.us-cert.gov/cas/techalerts/TA05-180A.html", "source": "cve@mitre.org", "tags": [ "Patch", "Third Party Advisory", "US Government Resource" ] }, { "url": "http://secunia.com/advisories/15789", "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Patch", "Vendor Advisory" ] }, { "url": "http://securitytracker.com/id?1014273", "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Patch" ] }, { "url": "http://seer.support.veritas.com/docs/276604.htm", "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Patch", "Vendor Advisory" ] }, { "url": "http://seer.support.veritas.com/docs/277429.htm", "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Patch" ] }, { "url": "http://www.idefense.com/application/poi/display?id=272&type=vulnerabilities&flashstatus=true", "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Vendor Advisory" ] }, { "url": "http://www.kb.cert.org/vuls/id/492105", "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Patch", "Third Party Advisory", "US Government Resource" ] }, { "url": "http://www.osvdb.org/17624", "source": "af854a3a-2127-422b-91ae-364da2661108" }, { "url": "http://www.securityfocus.com/bid/14022", "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Exploit", "Patch" ] }, { "url": "http://www.us-cert.gov/cas/techalerts/TA05-180A.html", "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Patch", "Third Party Advisory", "US Government Resource" ] } ] }