peter bassill · operator
$ cve CVE-2004-1389 JSON

CVE-2004-1389 EXPLOIT

6.0
MEDIUM · CVSS 2.0 · EPSS 9.9% (pctl 95)

Patch early

A public exploit exists.

Description

Unknown vulnerability in the Veritas NetBackup Administrative Assistant interface for NetBackup BusinesServer 3.4, 3.4.1, and 4.5, DataCenter 3.4, 3.4.1, and 4.5, Enterprise Server 5.1, and NetBackup Server 5.0 and 5.1, allows attackers to execute arbitrary commands via the bpjava-susvc process, possibly related to the call-back feature.

Scoring

CVSS6.0 (MEDIUM, v2.0)
VectorAV:L/AC:H/Au:S/C:C/I:C/A:C
EPSS9.86% — more likely to be exploited than 95% of all CVEs
On CISA KEVno
Public exploityes
Published2004-12-31
Last modified2026-06-16

Affected (1)

VendorProduct
veritasnetbackup

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD