First published: Fri Feb 20 2009(Updated: )
Unspecified vulnerability in the Veritas network daemon (aka vnetd) in Symantec Veritas NetBackup Server / Enterprise Server 5.x, 6.0 before MP7 SP1, and 6.5 before 6.5.3.1 allows remote attackers to execute arbitrary code via unknown vectors related to "initial communications setup."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Symantec Veritas NetBackup Server | <=5.1mp7 | |
Symantec Veritas NetBackup Server | <=6.0mp7 | |
Symantec Veritas NetBackup Server | <=6.5.2 | |
Symantec Veritas NetBackup Server | =5.1 | |
Symantec Veritas NetBackup Server | =6.0 | |
Symantec Veritas NetBackup Server | =6.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-0651 is considered a critical vulnerability as it allows remote attackers to execute arbitrary code.
To fix CVE-2009-0651, update the Symantec Veritas NetBackup Server to version 6.0 MP7 SP1 or later, or 6.5.3.1 or later.
CVE-2009-0651 affects Symantec Veritas NetBackup Server/Enterprise Server versions 5.x, 6.0 before MP7 SP1, and 6.5 before 6.5.3.1.
Yes, CVE-2009-0651 can be exploited remotely due to insecure initial communications setup.
The potential consequences of CVE-2009-0651 include unauthorized remote code execution which can lead to data breaches.