CVE-2005-0496

CRITICAL

Arkeia Network Backup Client 5.x - Use of Hard-coded Credentials

Title source: llm
STIX 2.1

Description

Arkeia Network Backup Client 5.x contains hard-coded credentials that effectively serve as a back door, which allows remote attackers to access the file system and possibly execute arbitrary commands.

References (4)

Core 4
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/20667
Broken Link, Vendor Advisory x_refsource_misc
http://metasploit.com/research/arkeia_agent/
Broken Link, Third Party Advisory, VDB Entry, Vendor Advisory vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1013256
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=110900879826004&w=2

Scores

CVSS v3 9.8
EPSS 0.0294
EPSS Percentile 85.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-798
Status published
Products (1)
arkeia/network_backup 5.0
Published Feb 21, 2005
Tracked Since Feb 18, 2026