Show filters
69 Total Results
Displaying 61-69 of 69
Sort by:
Attacker Value
Unknown
CVE-2005-3658
Disclosure Date: December 31, 2005 (last updated February 22, 2025)
Multiple heap-based buffer overflows in EMC Legato NetWorker 7.1.x before 7.1.4 and 7.2.x before 7.2.1.Build.314, and other products such as Sun Solstice Backup (SBU) 6.0 and 6.1 and StorEdge Enterprise Backup Software (EBS) 7.1 through 7.2L, allow remote attackers to execute arbitrary code or cause a denial of service (unresponsive application) via malformed RPC packets to (1) RPC program number 390109 (nsrd.exe) and (2) RPC program number 390113 (nsrexecd.exe).
0
Attacker Value
Unknown
CVE-2005-0357
Disclosure Date: August 23, 2005 (last updated February 22, 2025)
EMC Legato NetWorker, Sun Solstice Backup 6.0 and 6.1, and StorEdge Enterprise Backup 7.0 through 7.2 rely on AUTH_UNIX authentication, which relies on user ID for authentication and allows remote attackers to bypass authentication and gain privileges by spoofing a username or UID.
0
Attacker Value
Unknown
CVE-2005-0359
Disclosure Date: August 23, 2005 (last updated February 22, 2025)
The Legato PortMapper in EMC Legato NetWorker, Sun Solstice Backup 6.0 and 6.1, and StorEdge Enterprise Backup 7.0 through 7.2 does not restrict access to the pmap_set and pmap_unset commands, which allows remote attackers to (1) cause a denial of service by using pmap_unset to un-register a NetWorker service, or (2) obtain sensitive information from NetWorker services by using pmap_set to register a new service.
0
Attacker Value
Unknown
CVE-2005-0358
Disclosure Date: August 23, 2005 (last updated February 22, 2025)
EMC Legato NetWorker, Solstice Backup 6.0 and 6.1, and StorEdge Enterprise Backup 6.0 through 7.2 do not properly verify authentication tokens, which allows remote attackers to gain privileges by modifying an authentication token.
0
Attacker Value
Unknown
CVE-2003-1460
Disclosure Date: December 31, 2003 (last updated February 22, 2025)
Worker Filemanager 1.0 through 2.7 sets the permissions on the destination directory to world-readable and executable while copying data, which could allow local users to obtain sensitive information.
0
Attacker Value
Unknown
CVE-2003-1528
Disclosure Date: December 31, 2003 (last updated February 22, 2025)
nsr_shutdown in Fujitsu Siemens NetWorker 6.0 allows local users to overwrite arbitrary files via a symlink attack on the nsrsh[PID] temporary file.
0
Attacker Value
Unknown
CVE-2002-0113
Disclosure Date: March 25, 2002 (last updated February 22, 2025)
EMC NetWorker (formerly Legato NetWorker) before 7.0 stores log files in the /nsr/logs/ directory with world-readable permissions, which allows local users to read sensitive information and possibly gain privileges. NOTE: this was originally reported for Legato NetWorker 6.1 on the Solaris 7 platform.
0
Attacker Value
Unknown
CVE-2002-0114
Disclosure Date: March 25, 2002 (last updated February 22, 2025)
EMC NetWorker (formerly Legato NetWorker) before 7.0 stores passwords in plaintext in the daemon.log file, which allows local users to gain privileges by reading the password from the file. NOTE: this was originally reported for Legato NetWorker 6.1 on the Solaris 7 platform.
0
Attacker Value
Unknown
CVE-2001-0910
Disclosure Date: November 21, 2001 (last updated February 22, 2025)
Legato Networker before 6.1 allows remote attackers to bypass access restrictions and gain privileges on the Networker interface by spoofing the admin server name and IP address and connecting to Networker from an IP address whose hostname can not be determined by a DNS reverse lookup.
0