CVE-2011-0546 EXPLOIT
6.5
MEDIUM · CVSS 2.0 · EPSS 1.6% (pctl 75)
Patch early
A public exploit exists.
Description
Symantec Backup Exec 11.0, 12.0, 12.5, 13.0, and 13.0 R2 does not validate identity information sent between the media server and the remote agent, which allows man-in-the-middle attackers to execute NDMP commands via unspecified vectors.
Scoring
| CVSS | 6.5 (MEDIUM, v2.0) |
|---|---|
| Vector | AV:A/AC:H/Au:S/C:C/I:C/A:C |
| EPSS | 1.61% — more likely to be exploited than 75% of all CVEs |
| Weakness | CWE-20 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2011-05-31 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| symantec | backup exec |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Symantec Backup Exec 12.5 - Man In The Middle | 2011-07-09 |
References
- http://marc.info/?l=bugtraq&m=131489365508507&w=2
- http://secunia.com/advisories/44698
- http://securityreason.com/securityalert/8300
- http://www.securityfocus.com/bid/47824
- http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=2011&suid=20110526_00
- http://marc.info/?l=bugtraq&m=131489365508507&w=2
- http://secunia.com/advisories/44698
- http://securityreason.com/securityalert/8300
- http://www.securityfocus.com/bid/47824
- http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=2011&suid=20110526_00
→ the Explorer · watch your stack · NVD