VERITAS Backup Exec for Windows Servers 8.6 through 10.0, Backup Exec for NetWare Servers 9.0 and 9.1, and NetBackup for NetWare Media Server Option 4.5 through 5.1 uses a static password during authentication from the NDMP agent to the server, which allows remote attackers to read and write arbitrary files with the backup server.
総合評価: CVE-2005-2611 は悪用リスクが高い(94.9/100)。CVSS 深刻度は重大。悪用される可能性が高い(EPSS 87.03%、100 パーセンタイル) 根拠: 公開エクスプロイトが 3 件参照されています(Exploit-DB)。 直近 1 日で EPSS が +7.40% 上昇。悪用への関心が高まっている可能性があります。 推奨対応: 公開エクスプロイトが確認されています。影響範囲の確認、緩和策の適用、パッチ適用を優先してください。
リスクは変動します。再評価に基づき、本ページの表示内容を更新しています。
| EDB-ID | ソース | 種別 | 公開 | リンク |
|---|---|---|---|---|
| 1147 | exploit_db | edb | 2005-08-11 | Exploit-DB ↗ |
| — | nvd_ref | exploit_tag | Exploit-DB ↗ | |
| — | nvd_ref | exploit_tag | Exploit-DB ↗ |
EPSS は日次で悪用されやすさの相対度合いを推定します。パーセンタイルは採点済み CVE の中での相対位置(高いほど相対的に深刻)を示します。
| # | 日付 | 旧 EPSS スコア | 新 EPSS スコア | Δ(新 − 旧) |
|---|---|---|---|---|
| 1 | 2026-06-15 | 79.63% | 87.03% | +7.40% |
| 2 | 2025-12-31 | 78.90% | 79.63% | +0.73% |
| 3 | 2025-09-15 | — | 78.90% | — |
EPSS の全履歴 (全 16 件)
この CVE の CVSS 指標。
| ベーススコア | バージョン | 深刻度 | ベクトル | 悪用しやすさ | 影響 | スコアの出典 |
|---|---|---|---|---|---|---|
| 10.0 | 2.0 | HIGH |
|
10.0 | 10.0 | [email protected] |
| ベンダー | 製品 | バージョン | 生の CPE |
|---|---|---|---|
| symantec_veritas | backup_exec | netware_servers_9.0.4019 | cpe:2.3:a:symantec_veritas:backup_exec:netware_servers_9.0.4019:*:*:*:*:*:*:* |
| symantec_veritas | backup_exec | netware_servers_9.0.4170 | cpe:2.3:a:symantec_veritas:backup_exec:netware_servers_9.0.4170:*:*:*:*:*:*:* |
| symantec_veritas | backup_exec | netware_servers_9.0.4172 | cpe:2.3:a:symantec_veritas:backup_exec:netware_servers_9.0.4172:*:*:*:*:*:*:* |
| symantec_veritas | backup_exec | netware_servers_9.0.4174 | cpe:2.3:a:symantec_veritas:backup_exec:netware_servers_9.0.4174:*:*:*:*:*:*:* |
| symantec_veritas | backup_exec | netware_servers_9.0.4202 | cpe:2.3:a:symantec_veritas:backup_exec:netware_servers_9.0.4202:*:*:*:*:*:*:* |
| symantec_veritas | backup_exec | netware_servers_9.1.306 | cpe:2.3:a:symantec_veritas:backup_exec:netware_servers_9.1.306:*:*:*:*:*:*:* |
| symantec_veritas | backup_exec | netware_servers_9.1.307 | cpe:2.3:a:symantec_veritas:backup_exec:netware_servers_9.1.307:*:*:*:*:*:*:* |
| symantec_veritas | backup_exec | netware_servers_9.1.1067_.2 | cpe:2.3:a:symantec_veritas:backup_exec:netware_servers_9.1.1067_.2:*:*:*:*:*:*:* |
| symantec_veritas | backup_exec | netware_servers_9.1.1067_.3 | cpe:2.3:a:symantec_veritas:backup_exec:netware_servers_9.1.1067_.3:*:*:*:*:*:*:* |
| symantec_veritas | backup_exec | netware_servers_9.1.1127_.1 | cpe:2.3:a:symantec_veritas:backup_exec:netware_servers_9.1.1127_.1:*:*:*:*:*:*:* |
| symantec_veritas | backup_exec | netware_servers_9.1.1151_.1 | cpe:2.3:a:symantec_veritas:backup_exec:netware_servers_9.1.1151_.1:*:*:*:*:*:*:* |
| symantec_veritas | backup_exec | netware_servers_9.1.1152 | cpe:2.3:a:symantec_veritas:backup_exec:netware_servers_9.1.1152:*:*:*:*:*:*:* |
| symantec_veritas | backup_exec | netware_servers_9.1.1152_.4 | cpe:2.3:a:symantec_veritas:backup_exec:netware_servers_9.1.1152_.4:*:*:*:*:*:*:* |
| symantec_veritas | backup_exec | netware_servers_9.1.1154 | cpe:2.3:a:symantec_veritas:backup_exec:netware_servers_9.1.1154:*:*:*:*:*:*:* |
| symantec_veritas | backup_exec | netware_servers_9.1.1156 | cpe:2.3:a:symantec_veritas:backup_exec:netware_servers_9.1.1156:*:*:*:*:*:*:* |
| symantec_veritas | backup_exec | windows_servers_8.6 | cpe:2.3:a:symantec_veritas:backup_exec:windows_servers_8.6:*:*:*:*:*:*:* |
| symantec_veritas | backup_exec | windows_servers_9.0 | cpe:2.3:a:symantec_veritas:backup_exec:windows_servers_9.0:*:*:*:*:*:*:* |
| symantec_veritas | backup_exec | windows_servers_9.0_rev._4367 | cpe:2.3:a:symantec_veritas:backup_exec:windows_servers_9.0_rev._4367:*:*:*:*:*:*:* |
| symantec_veritas | backup_exec | windows_servers_9.0_rev._4367_sp1 | cpe:2.3:a:symantec_veritas:backup_exec:windows_servers_9.0_rev._4367_sp1:*:*:*:*:*:*:* |
| symantec_veritas | backup_exec | windows_servers_9.0_rev._4454 | cpe:2.3:a:symantec_veritas:backup_exec:windows_servers_9.0_rev._4454:*:*:*:*:*:*:* |
| symantec_veritas | backup_exec | windows_servers_9.0_rev._4454_sp1 | cpe:2.3:a:symantec_veritas:backup_exec:windows_servers_9.0_rev._4454_sp1:*:*:*:*:*:*:* |
| symantec_veritas | backup_exec | windows_servers_9.1 | cpe:2.3:a:symantec_veritas:backup_exec:windows_servers_9.1:*:*:*:*:*:*:* |
| symantec_veritas | backup_exec | windows_servers_9.1_rev._4691 | cpe:2.3:a:symantec_veritas:backup_exec:windows_servers_9.1_rev._4691:*:*:*:*:*:*:* |
| symantec_veritas | backup_exec | windows_servers_9.1_rev._4691_sp2 | cpe:2.3:a:symantec_veritas:backup_exec:windows_servers_9.1_rev._4691_sp2:*:*:*:*:*:*:* |
| symantec_veritas | backup_exec | windows_servers_10.0_rev._5484 | cpe:2.3:a:symantec_veritas:backup_exec:windows_servers_10.0_rev._5484:*:*:*:*:*:*:* |
| symantec_veritas | backup_exec | windows_servers_10.0_rev._5484_sp1 | cpe:2.3:a:symantec_veritas:backup_exec:windows_servers_10.0_rev._5484_sp1:*:*:*:*:*:*:* |
| symantec_veritas | backup_exec | windows_servers_10.0_rev._5520 | cpe:2.3:a:symantec_veritas:backup_exec:windows_servers_10.0_rev._5520:*:*:*:*:*:*:* |
| symantec_veritas | backup_exec_remote_agent | netware_server | cpe:2.3:a:symantec_veritas:backup_exec_remote_agent:netware_server:*:*:*:*:*:*:* |
| symantec_veritas | backup_exec_remote_agent | unix_linux_server | cpe:2.3:a:symantec_veritas:backup_exec_remote_agent:unix_linux_server:*:*:*:*:*:*:* |
| symantec_veritas | backup_exec_remote_agent | windows_server | cpe:2.3:a:symantec_veritas:backup_exec_remote_agent:windows_server:*:*:*:*:*:*:* |
| symantec_veritas | netbackup | netware_media_servers_4.5 | cpe:2.3:a:symantec_veritas:netbackup:netware_media_servers_4.5:*:*:*:*:*:*:* |
| symantec_veritas | netbackup | netware_media_servers_4.5_fp1 | cpe:2.3:a:symantec_veritas:netbackup:netware_media_servers_4.5_fp1:*:*:*:*:*:*:* |
| symantec_veritas | netbackup | netware_media_servers_4.5_fp2 | cpe:2.3:a:symantec_veritas:netbackup:netware_media_servers_4.5_fp2:*:*:*:*:*:*:* |
| symantec_veritas | netbackup | netware_media_servers_4.5_fp3 | cpe:2.3:a:symantec_veritas:netbackup:netware_media_servers_4.5_fp3:*:*:*:*:*:*:* |
| symantec_veritas | netbackup | netware_media_servers_4.5_fp4 | cpe:2.3:a:symantec_veritas:netbackup:netware_media_servers_4.5_fp4:*:*:*:*:*:*:* |
| symantec_veritas | netbackup | netware_media_servers_4.5_fp5 | cpe:2.3:a:symantec_veritas:netbackup:netware_media_servers_4.5_fp5:*:*:*:*:*:*:* |
| symantec_veritas | netbackup | netware_media_servers_4.5_fp6 | cpe:2.3:a:symantec_veritas:netbackup:netware_media_servers_4.5_fp6:*:*:*:*:*:*:* |
| symantec_veritas | netbackup | netware_media_servers_4.5_fp7 | cpe:2.3:a:symantec_veritas:netbackup:netware_media_servers_4.5_fp7:*:*:*:*:*:*:* |
| symantec_veritas | netbackup | netware_media_servers_4.5_fp8 | cpe:2.3:a:symantec_veritas:netbackup:netware_media_servers_4.5_fp8:*:*:*:*:*:*:* |
| symantec_veritas | netbackup | netware_media_servers_4.5_mp1 | cpe:2.3:a:symantec_veritas:netbackup:netware_media_servers_4.5_mp1:*:*:*:*:*:*:* |
| symantec_veritas | netbackup | netware_media_servers_4.5_mp2 | cpe:2.3:a:symantec_veritas:netbackup:netware_media_servers_4.5_mp2:*:*:*:*:*:*:* |
| symantec_veritas | netbackup | netware_media_servers_4.5_mp3 | cpe:2.3:a:symantec_veritas:netbackup:netware_media_servers_4.5_mp3:*:*:*:*:*:*:* |
| symantec_veritas | netbackup | netware_media_servers_4.5_mp4 | cpe:2.3:a:symantec_veritas:netbackup:netware_media_servers_4.5_mp4:*:*:*:*:*:*:* |
| symantec_veritas | netbackup | netware_media_servers_4.5_mp5 | cpe:2.3:a:symantec_veritas:netbackup:netware_media_servers_4.5_mp5:*:*:*:*:*:*:* |
| symantec_veritas | netbackup | netware_media_servers_4.5_mp6 | cpe:2.3:a:symantec_veritas:netbackup:netware_media_servers_4.5_mp6:*:*:*:*:*:*:* |
| symantec_veritas | netbackup | netware_media_servers_4.5_mp7 | cpe:2.3:a:symantec_veritas:netbackup:netware_media_servers_4.5_mp7:*:*:*:*:*:*:* |
| symantec_veritas | netbackup | netware_media_servers_4.5_mp8 | cpe:2.3:a:symantec_veritas:netbackup:netware_media_servers_4.5_mp8:*:*:*:*:*:*:* |
| symantec_veritas | netbackup | netware_media_servers_5.0 | cpe:2.3:a:symantec_veritas:netbackup:netware_media_servers_5.0:*:*:*:*:*:*:* |
| symantec_veritas | netbackup | netware_media_servers_5.0_mp1 | cpe:2.3:a:symantec_veritas:netbackup:netware_media_servers_5.0_mp1:*:*:*:*:*:*:* |
| symantec_veritas | netbackup | netware_media_servers_5.0_mp2 | cpe:2.3:a:symantec_veritas:netbackup:netware_media_servers_5.0_mp2:*:*:*:*:*:*:* |
| symantec_veritas | netbackup | netware_media_servers_5.0_mp3 | cpe:2.3:a:symantec_veritas:netbackup:netware_media_servers_5.0_mp3:*:*:*:*:*:*:* |
| symantec_veritas | netbackup | netware_media_servers_5.0_mp4 | cpe:2.3:a:symantec_veritas:netbackup:netware_media_servers_5.0_mp4:*:*:*:*:*:*:* |
| symantec_veritas | netbackup | netware_media_servers_5.0_mp5 | cpe:2.3:a:symantec_veritas:netbackup:netware_media_servers_5.0_mp5:*:*:*:*:*:*:* |
| symantec_veritas | netbackup | netware_media_servers_5.1 | cpe:2.3:a:symantec_veritas:netbackup:netware_media_servers_5.1:*:*:*:*:*:*:* |
| symantec_veritas | netbackup | netware_media_servers_5.1_mp1 | cpe:2.3:a:symantec_veritas:netbackup:netware_media_servers_5.1_mp1:*:*:*:*:*:*:* |
| symantec_veritas | netbackup | netware_media_servers_5.1_mp2 | cpe:2.3:a:symantec_veritas:netbackup:netware_media_servers_5.1_mp2:*:*:*:*:*:*:* |
| symantec_veritas | netbackup | netware_media_servers_5.1_mp3 | cpe:2.3:a:symantec_veritas:netbackup:netware_media_servers_5.1_mp3:*:*:*:*:*:*:* |
| URL | タグ |
|---|---|
| http://secunia.com/advisories/16403 | Patch Vendor Advisory |
| http://securityresponse.symantec.com/avcenter/security/Content/2005.08.12b.html | Patch Vendor Advisory |
| http://securitytracker.com/id?1014662 | Exploit Patch Vendor Advisory |
| http://www.kb.cert.org/vuls/id/378957 | Patch Third Party Advisory US Government Resource |
| http://www.securityfocus.com/bid/14551 | Exploit |
| http://www.us-cert.gov/cas/techalerts/TA05-224A.html | Third Party Advisory US Government Resource |
| http://www.vupen.com/english/advisories/2005/1387 | |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/21793 |