Vulnerabilities > CVE-2004-1389 - Privilege Escalation vulnerability in Veritas NetBackup

047910
CVSS 6.0 - MEDIUM
Attack vector
LOCAL
Attack complexity
HIGH
Privileges required
SINGLE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
high complexity
veritas
exploit available
metasploit

Summary

Unknown vulnerability in the Veritas NetBackup Administrative Assistant interface for NetBackup BusinesServer 3.4, 3.4.1, and 4.5, DataCenter 3.4, 3.4.1, and 4.5, Enterprise Server 5.1, and NetBackup Server 5.0 and 5.1, allows attackers to execute arbitrary commands via the bpjava-susvc process, possibly related to the call-back feature.

Exploit-Db

  • descriptionVeritas NetBackup Remote Command Execution. CVE-2004-1389. Remote exploits for multiple platform
    idEDB-ID:9941
    last seen2016-02-01
    modified2004-10-21
    published2004-10-21
    reporterpatrick
    sourcehttps://www.exploit-db.com/download/9941/
    titleVeritas NetBackup - Remote Command Execution
  • descriptionVERITAS NetBackup Remote Command Execution. CVE-2004-1389. Remote exploits for multiple platform
    idEDB-ID:16290
    last seen2016-02-01
    modified2010-10-09
    published2010-10-09
    reportermetasploit
    sourcehttps://www.exploit-db.com/download/16290/
    titleVERITAS NetBackup Remote Command Execution

Metasploit

descriptionThis module allows arbitrary command execution on an ephemeral port opened by Veritas NetBackup, whilst an administrator is authenticated. The port is opened and allows direct console access as root or SYSTEM from any source address.
idMSF:EXPLOIT/MULTI/MISC/VERITAS_NETBACKUP_CMDEXEC
last seen2020-05-22
modified2017-11-08
published2008-11-13
referenceshttps://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1389
reporterRapid7
sourcehttps://github.com/rapid7/metasploit-framework/blob/master//modules/exploits/multi/misc/veritas_netbackup_cmdexec.rb
titleVERITAS NetBackup Remote Command Execution

Packetstorm

data sourcehttps://packetstormsecurity.com/files/download/82267/veritas_netbackup_cmdexec.rb.txt
idPACKETSTORM:82267
last seen2016-12-05
published2009-10-27
reporterpatrick
sourcehttps://packetstormsecurity.com/files/82267/VERITAS-NetBackup-Remote-Command-Execution.html
titleVERITAS NetBackup Remote Command Execution