CVE-2005-0357
published 2005-08-23CVE-2005-0357: EMC Legato NetWorker, Sun Solstice Backup 6.0 and 6.1, and StorEdge Enterprise Backup 7.0 through 7.2 rely on AUTH_UNIX authentication, which relies on user ID…
PriorityP346high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
4.50%
90.4th percentile
EMC Legato NetWorker, Sun Solstice Backup 6.0 and 6.1, and StorEdge Enterprise Backup 7.0 through 7.2 rely on AUTH_UNIX authentication, which relies on user ID for authentication and allows remote attackers to bypass authentication and gain privileges by spoofing a username or UID.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| emc | legato_networker | — | — |
| emc | legato_networker | — | — |
| emc | legato_networker | — | — |
| emc | legato_networker | — | — |
| emc | legato_networker | — | — |
| sun | solstice_backup | — | — |
| sun | solstice_backup | — | — |
| sun | storedge_enterprise_backup_software | — | — |
| sun | storedge_enterprise_backup_software | — | — |
| sun | storedge_enterprise_backup_software | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://secunia.com/advisories/16464http://secunia.com/advisories/16470http://securitytracker.com/id?1014713http://sunsolve.sun.com/search/document.do?assetkey=1-26-101886-1http://www.kb.cert.org/vuls/id/606857http://www.legato.com/support/websupport/product_alerts/081605_NW_authentication.htmhttp://www.osvdb.org/18800http://www.securityfocus.com/bid/14582https://exchange.xforce.ibmcloud.com/vulnerabilities/21887http://secunia.com/advisories/16464http://secunia.com/advisories/16470http://securitytracker.com/id?1014713http://sunsolve.sun.com/search/document.do?assetkey=1-26-101886-1http://www.kb.cert.org/vuls/id/606857http://www.legato.com/support/websupport/product_alerts/081605_NW_authentication.htmhttp://www.osvdb.org/18800http://www.securityfocus.com/bid/14582https://exchange.xforce.ibmcloud.com/vulnerabilities/21887
2005-08-23
Published