Описание
VERITAS Backup Exec 9.0 through 10.0 for Windows Servers, and 9.0.4019 through 9.1.307 for Netware, allows remote attackers to cause a denial of service (Remote Agent crash) via (1) a crafted packet in NDMLSRVR.DLL or (2) a request packet with an invalid (non-0) "Error Status" value, which triggers a null dereference.
Ссылки
- Broken Link
- Broken LinkThird Party AdvisoryVDB Entry
- Broken Link
- Broken Link
- Broken LinkVendor Advisory
- Broken Link
- Broken Link
- Broken LinkThird Party AdvisoryVDB Entry
- Broken Link
- Broken Link
- Broken LinkVendor Advisory
- Broken Link
Уязвимые конфигурации
Конфигурация 1Версия от 9.0 (включая) до 10.0 (включая)Версия от 9.0.4019 (включая) до 9.1.307 (включая)
Одно из
cpe:2.3:a:veritas:backup_exec:*:*:*:*:*:windows_server:*:*
cpe:2.3:a:veritas:backup_exec:*:*:*:*:*:netware:*:*
EPSS
Процентиль: 93%
0.1127
Средний
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-476
Связанные уязвимости
CVSS3: 7.5
github
почти 4 года назад
VERITAS Backup Exec 9.0 through 10.0 for Windows Servers, and 9.0.4019 through 9.1.307 for Netware, allows remote attackers to cause a denial of service (Remote Agent crash) via (1) a crafted packet in NDMLSRVR.DLL or (2) a request packet with an invalid (non-0) "Error Status" value, which triggers a null dereference.
EPSS
Процентиль: 93%
0.1127
Средний
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-476