Vulnerabilities > CVE-2004-1389 - Unspecified vulnerability in Veritas Netbackup

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
veritas
exploit available
metasploit

Summary

Unknown vulnerability in the Veritas NetBackup Administrative Assistant interface for NetBackup BusinesServer 3.4, 3.4.1, and 4.5, DataCenter 3.4, 3.4.1, and 4.5, Enterprise Server 5.1, and NetBackup Server 5.0 and 5.1, allows attackers to execute arbitrary commands via the bpjava-susvc process, possibly related to the call-back feature.

Exploit-Db

  • descriptionVeritas NetBackup Remote Command Execution. CVE-2004-1389. Remote exploits for multiple platform
    idEDB-ID:9941
    last seen2016-02-01
    modified2004-10-21
    published2004-10-21
    reporterpatrick
    sourcehttps://www.exploit-db.com/download/9941/
    titleVeritas NetBackup - Remote Command Execution
  • descriptionVERITAS NetBackup Remote Command Execution. CVE-2004-1389. Remote exploits for multiple platform
    idEDB-ID:16290
    last seen2016-02-01
    modified2010-10-09
    published2010-10-09
    reportermetasploit
    sourcehttps://www.exploit-db.com/download/16290/
    titleVERITAS NetBackup Remote Command Execution

Metasploit

descriptionThis module allows arbitrary command execution on an ephemeral port opened by Veritas NetBackup, whilst an administrator is authenticated. The port is opened and allows direct console access as root or SYSTEM from any source address.
idMSF:EXPLOIT/MULTI/MISC/VERITAS_NETBACKUP_CMDEXEC
last seen2020-05-22
modified2017-11-08
published2008-11-13
referenceshttps://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1389
reporterRapid7
sourcehttps://github.com/rapid7/metasploit-framework/blob/master//modules/exploits/multi/misc/veritas_netbackup_cmdexec.rb
titleVERITAS NetBackup Remote Command Execution

Packetstorm

data sourcehttps://packetstormsecurity.com/files/download/82267/veritas_netbackup_cmdexec.rb.txt
idPACKETSTORM:82267
last seen2016-12-05
published2009-10-27
reporterpatrick
sourcehttps://packetstormsecurity.com/files/82267/VERITAS-NetBackup-Remote-Command-Execution.html
titleVERITAS NetBackup Remote Command Execution