Symantec Backup Exec Scheduler ActiveX Control Multiple Arbitrary File Overwrite Vulnerabilities
BID:28008
Info
Symantec Backup Exec Scheduler ActiveX Control Multiple Arbitrary File Overwrite Vulnerabilities
| Bugtraq ID: | 28008 |
| Class: | Input Validation Error |
| CVE: |
CVE-2007-6017 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 28 2008 12:00AM |
| Updated: | Sep 25 2008 12:29AM |
| Credit: | JJ Reyes of Secunia Research is credited with the discovery of these issues. |
| Vulnerable: |
Symantec Veritas NetBackup Server 6.5 Symantec Veritas NetBackup Server 6.0 Symantec Veritas NetBackup Server 5.1 Symantec Veritas NetBackup Enterprise Server 6.5 Symantec Veritas NetBackup Enterprise Server 6.0 Symantec Veritas NetBackup Enterprise Server 5.1 Symantec Backup Exec for Windows Servers 12.0 Symantec Backup Exec for Windows Servers 11d |
| Not Vulnerable: |
Symantec Veritas NetBackup Server 6.5.2 Symantec Veritas NetBackup Server 6.0 MP7 Symantec Veritas NetBackup Server 5.1 MP7 Symantec Veritas NetBackup Enterprise Server 6.5.2 Symantec Veritas NetBackup Enterprise Server 6.0 MP7 Symantec Veritas NetBackup Enterprise Server 5.1 MP7 |
Discussion
Symantec Backup Exec Scheduler ActiveX Control Multiple Arbitrary File Overwrite Vulnerabilities
Symantec Backup Exec is prone to multiple vulnerabilities that allow attackers overwrite arbitrary files.
An attacker can exploit these issues by enticing an unsuspecting victim to view a malicious HTML page.
Successfully exploiting these issues will allow the attacker to corrupt and overwrite arbitrary files on the victim's computer in the context of the vulnerable application using the ActiveX control (typically Internet Explorer).
Symantec Backup Exec is prone to multiple vulnerabilities that allow attackers overwrite arbitrary files.
An attacker can exploit these issues by enticing an unsuspecting victim to view a malicious HTML page.
Successfully exploiting these issues will allow the attacker to corrupt and overwrite arbitrary files on the victim's computer in the context of the vulnerable application using the ActiveX control (typically Internet Explorer).
Exploit / POC
Symantec Backup Exec Scheduler ActiveX Control Multiple Arbitrary File Overwrite Vulnerabilities
An attacker can exploit these issues by enticing an unsuspecting victim to follow a malicious URI.
An attacker can exploit these issues by enticing an unsuspecting victim to follow a malicious URI.
Solution / Fix
Symantec Backup Exec Scheduler ActiveX Control Multiple Arbitrary File Overwrite Vulnerabilities
Solution:
The vendor released updates to address these issues. Please see the references for more information.
Symantec Backup Exec for Windows Servers 11d
Symantec Backup Exec for Windows Servers 12.0
Solution:
The vendor released updates to address these issues. Please see the references for more information.
Symantec Backup Exec for Windows Servers 11d
-
Symantec be6235RHF31_32bit_300630.exe
http://support.veritas.com/docs/300630 -
Symantec be6235RHF31_x64bit_300631.exe
http://support.veritas.com/docs/300631 -
Symantec be7170RHF39_32bit_300627.exe
http://support.veritas.com/docs/300627 -
Symantec be7170RHF39_x64bit_300628.exe
http://support.veritas.com/docs/300628
Symantec Backup Exec for Windows Servers 12.0
-
Symantec be1364R300287_32bit_300632.exe
http://support.veritas.com/docs/300632 -
Symantec be1364R300287_x64bit_300633.exe
http://support.veritas.com/docs/300633
References
Symantec Backup Exec Scheduler ActiveX Control Multiple Arbitrary File Overwrite Vulnerabilities
References:
References:
- Microsoft Knowledge Base Article 240797 (Microsoft)
- Symantec Backup Exec Homepage (Symantec )
- SYM08-007 Symantec Backup Exec and NetBackup for Windows Servers Multiple Vulner (Symantec)
- Symantec Backup Exec Calendar Control Multiple Vulnerabilities (Secunia Research)