Vulnerability Name:

CVE-2005-0357 (CCN-21887)

Assigned:2005-08-16
Published:2005-08-16
Updated:2017-07-11
Summary:EMC Legato NetWorker, Sun Solstice Backup 6.0 and 6.1, and StorEdge Enterprise Backup 7.0 through 7.2 rely on AUTH_UNIX authentication, which relies on user ID for authentication and allows remote attackers to bypass authentication and gain privileges by spoofing a username or UID.
CVSS v3 Severity:7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): Low
Integrity (I): Low
Availibility (A): Low
CVSS v2 Severity:7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
7.5 High (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
Vulnerability Type:CWE-Other
Vulnerability Consequences:Gain Access
References:Source: MITRE
Type: CNA
CVE-2005-0357

Source: CCN
Type: SA16464
Legato NetWorker Multiple Vulnerabilities

Source: SECUNIA
Type: Patch, Vendor Advisory
16464

Source: CCN
Type: SA16470
Sun StorEdge Enterprise Backup Vulnerabilities

Source: SECUNIA
Type: Vendor Advisory
16470

Source: CCN
Type: SECTRACK ID: 1014713
Legato NetWorker AUTH_UNIX, Database, and Portmapper Authentication Can Be Bypassed By Remote Users

Source: SECTRACK
Type: Patch
1014713

Source: CCN
Type: Sun Alert ID: 101886
Security Vulnerabilities in the Sun StorEdge Enterprise Backup Software

Source: SUNALERT
Type: Patch, Vendor Advisory
101886

Source: CCN
Type: CIAC INFIORMATION BULLETIN P-281
Security Vulnerabilities in the Sun StorEdge Enterprise Backup Software

Source: CCN
Type: US-CERT VU#606857
EMC Legato NetWorker uses weak AUTH_UNIX authentication

Source: CERT-VN
Type: Patch, Third Party Advisory, US Government Resource
VU#606857

Source: CCN
Type: Legato Technical Product Alert August 16, 2005
Authentication and nwadmin, nsradmin, nsrports

Source: CONFIRM
Type: Patch
http://www.legato.com/support/websupport/product_alerts/081605_NW_authentication.htm

Source: OSVDB
Type: UNKNOWN
18800

Source: CCN
Type: OSVDB ID: 18800
Legato NetWorker AUTH_UNIX Authentication Bypass

Source: BID
Type: Patch
14582

Source: CCN
Type: BID-14582
EMC Legato Networker Multiple Vulnerabilities

Source: XF
Type: UNKNOWN
legato-authunix-bypass-authentication(21887)

Source: XF
Type: UNKNOWN
legato-authunix-bypass-authentication(21887)

Vulnerable Configuration:Configuration 1:
  • cpe:/a:emc:legato_networker:4.2.2:*:*:*:*:*:*:*
  • OR cpe:/a:emc:legato_networker:6.0:*:*:*:*:*:*:*
  • OR cpe:/a:emc:legato_networker:6.1:*:*:*:*:*:*:*
  • OR cpe:/a:emc:legato_networker:7.2:*:*:*:*:*:*:*
  • OR cpe:/a:emc:legato_networker:7.13:*:*:*:*:*:*:*
  • OR cpe:/a:sun:solstice_backup:6.0:*:*:*:*:*:*:*
  • OR cpe:/a:sun:solstice_backup:6.1:*:*:*:*:*:*:*
  • OR cpe:/a:sun:storedge_enterprise_backup_software:7.0:*:*:*:*:*:*:*
  • OR cpe:/a:sun:storedge_enterprise_backup_software:7.1:*:*:*:*:*:*:*
  • OR cpe:/a:sun:storedge_enterprise_backup_software:7.2:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:emc:legato_networker:*:*:*:*:*:*:*:*
  • OR cpe:/a:sun:solstice_backup:6.0:*:*:*:*:*:*:*
  • OR cpe:/a:sun:solstice_backup:6.1:*:*:*:*:*:*:*
  • OR cpe:/a:sun:storedge_enterprise_backup_software:7.0:*:*:*:*:*:*:*
  • OR cpe:/a:sun:storedge_enterprise_backup_software:7.1:*:*:*:*:*:*:*
  • OR cpe:/a:sun:storedge_enterprise_backup_software:7.2:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    BACK
    emc legato networker 4.2.2
    emc legato networker 6.0
    emc legato networker 6.1
    emc legato networker 7.2
    emc legato networker 7.13
    sun solstice backup 6.0
    sun solstice backup 6.1
    sun storedge enterprise backup software 7.0
    sun storedge enterprise backup software 7.1
    sun storedge enterprise backup software 7.2
    emc legato networker *
    sun solstice backup 6.0
    sun solstice backup 6.1
    sun storedge enterprise backup software 7.0
    sun storedge enterprise backup software 7.1
    sun storedge enterprise backup software 7.2