EMC Legato NetWorker, Solstice Backup 6.0 and 6.1, and StorEdge Enterprise Backup 6.0 through 7.2 do not properly verify authentication tokens, which allows remote attackers to gain privileges by modifying an authentication token.
References
Link | Resource |
---|---|
http://secunia.com/advisories/16464 | Patch Vendor Advisory |
http://secunia.com/advisories/16470 | Vendor Advisory |
http://securitytracker.com/id?1014713 | Patch |
http://sunsolve.sun.com/search/document.do?assetkey=1-26-101886-1 | Patch Vendor Advisory |
http://www.kb.cert.org/vuls/id/407641 | Patch Third Party Advisory US Government Resource |
http://www.legato.com/support/websupport/product_alerts/081605_NW_token_authentication.htm | |
http://www.osvdb.org/18801 | |
http://www.securityfocus.com/bid/14582 | Patch Vendor Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/21892 |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2005-08-23 04:00
Updated : 2017-07-11 01:32
NVD link : CVE-2005-0358
Mitre link : CVE-2005-0358
CVE.ORG link : CVE-2005-0358
JSON object : View
Products Affected
emc
- legato_networker
sun
- storedge_enterprise_backup_software
- solstice_backup
CWE