CVE-2005-0771 describes a critical vulnerability in VERITAS Backup Exec Server (beserver.exe) versions 9.0 through 10.0 for Windows, allowing unauthenticated remote attackers to modify the system registry via the RPC interface on TCP port 6106. This vulnerability carries a maximum CVSS score of 10.0, indicating a severe risk with network-based exploitation, low attack complexity, and complete compromise of confidentiality, integrity, and availability. While not listed in CISA's KEV catalog, a Metasploit module exists for exploitation, and its EPSS score of 0.81368 suggests a high likelihood of exploitation. Despite its age and high risk, there is no significant community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
9.0_rev.4367CPE matchmatch criteria | cpe:2.3:a:symantec_veritas:backup_exec:9.0_rev.4367:*:*:*:*:*:*:* | ||
9.0_rev.4454CPE matchmatch criteria | cpe:2.3:a:symantec_veritas:backup_exec:9.0_rev.4454:*:*:*:*:*:*:* | ||
9.1_rev.4691CPE matchmatch criteria | cpe:2.3:a:symantec_veritas:backup_exec:9.1_rev.4691:*:*:*:*:*:*:* | ||
10.0_rev.5484CPE matchmatch criteria | cpe:2.3:a:symantec_veritas:backup_exec:10.0_rev.5484:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:C/I:C/A:C
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.