EMC Legato NetWorker, Solstice Backup 6.0 and 6.1, and StorEdge Enterprise Backup 6.0 through 7.2 do not properly verify authentication tokens, which allows remote attackers to gain privileges by modifying an authentication token.
References
Link | Resource |
---|---|
http://sunsolve.sun.com/search/document.do?assetkey=1-26-101886-1 | Patch Vendor Advisory |
http://www.kb.cert.org/vuls/id/407641 | Patch Third Party Advisory US Government Resource |
http://www.securityfocus.com/bid/14582 | Patch Vendor Advisory |
http://www.osvdb.org/18801 | |
http://securitytracker.com/id?1014713 | Patch |
http://secunia.com/advisories/16470 | Vendor Advisory |
http://secunia.com/advisories/16464 | Patch Vendor Advisory |
http://www.legato.com/support/websupport/product_alerts/081605_NW_token_authentication.htm | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/21892 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2005-08-22 21:00
Updated : 2017-07-10 18:32
NVD link : CVE-2005-0358
Mitre link : CVE-2005-0358
JSON object : View
CWE
Products Affected
emc
- legato_networker
sun
- solstice_backup
- storedge_enterprise_backup_software