← All CVEs

CVE-2005-2715

high · 10

Format string vulnerability in the Java user interface service (bpjava-msvc) daemon for VERITAS NetBackup Data and Business Center 4.5FP and 4.5MP, and NetBackup Enterprise/Server/Client 5.0, 5.1, and 6.0, allows remote attackers to execute arbitrary code via the COMMAND_LOGON_TO_MSERVER command.

10
CVSS
60.4%
EPSS (exploit prob.)
99th
EPSS percentile
2005-10-12
Published

AV:N/AC:L/Au:N/C:C/I:C/A:C

Affected products

VendorProductAffected versions
symantec_veritasnetbackup_data_and_business_center4.5fp
symantec_veritasnetbackup_data_and_business_center4.5mp
symantec_veritasnetbackup_enterprise_server_client5.0
symantec_veritasnetbackup_enterprise_server_client5.1
symantec_veritasnetbackup_enterprise_server_client6.0

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2005-2715