Format string vulnerability in the Java user interface service (bpjava-msvc) daemon for VERITAS NetBackup Data and Business Center 4.5FP and 4.5MP, and NetBackup Enterprise/Server/Client 5.0, 5.1, and 6.0, allows remote attackers to execute arbitrary code via the COMMAND_LOGON_TO_MSERVER command.
2005-10-12T22:02:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 10.0 (HIGH)
AV:N/AC:L/Au:N/C:C/I:C/A:C
10.0
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | symantec_veritas | netbackup_data_and_business_center | 4.5fp | Yes |
Application | symantec_veritas | netbackup_data_and_business_center | 4.5mp | Yes |
Application | symantec_veritas | netbackup_enterprise_server_client | 5.0 | Yes |
Application | symantec_veritas | netbackup_enterprise_server_client | 5.1 | Yes |
Application | symantec_veritas | netbackup_enterprise_server_client | 6.0 | Yes |