Stack-based buffer overflow in VERITAS Backup Exec Remote Agent 9.0 through 10.0 for Windows, and 9.0.4019 through 9.1.307 for Netware allows remote attackers to execute arbitrary code via a CONNECT_CLIENT_AUTH request with authentication method type 3 (Windows credentials) and a long password argument.
2005-06-18T04:00:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 7.5 (HIGH)
AV:N/AC:L/Au:N/C:P/I:P/A:P
10.0
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | symantec_veritas | backup_exec | 9.0.4019 | Yes |
Application | symantec_veritas | backup_exec | 9.0.4170 | Yes |
Application | symantec_veritas | backup_exec | 9.0.4172 | Yes |
Application | symantec_veritas | backup_exec | 9.0.4174 | Yes |
Application | symantec_veritas | backup_exec | 9.0.4202 | Yes |
Application | symantec_veritas | backup_exec | 9.0_rev.4367 | Yes |
Application | symantec_veritas | backup_exec | 9.0_rev.4367_sp1 | Yes |
Application | symantec_veritas | backup_exec | 9.0_rev.4454 | Yes |
Application | symantec_veritas | backup_exec | 9.0_rev.4454_sp1 | Yes |
Application | symantec_veritas | backup_exec | 9.1.306 | Yes |
Application | symantec_veritas | backup_exec | 9.1.307 | Yes |
Application | symantec_veritas | backup_exec | 9.1.1067.2 | Yes |
Application | symantec_veritas | backup_exec | 9.1.1067.3 | Yes |
Application | symantec_veritas | backup_exec | 9.1.1127.1 | Yes |
Application | symantec_veritas | backup_exec | 9.1.1151.1 | Yes |
Application | symantec_veritas | backup_exec | 9.1.1152 | Yes |
Application | symantec_veritas | backup_exec | 9.1.1152.4 | Yes |
Application | symantec_veritas | backup_exec | 9.1.1154 | Yes |
Application | symantec_veritas | backup_exec | 9.1_rev.4691 | Yes |
Application | symantec_veritas | backup_exec | 9.1_rev.4691_sp2 | Yes |
Application | symantec_veritas | backup_exec | 10.0_rev.5484 | Yes |
Application | symantec_veritas | backup_exec | 10.0_rev.5484_sp1 | Yes |