CVE-2005-0773
EXPLOITEDVERITAS Backup Exec Remote Agent 9.0-10.0 - Remote Code Execution via CONNECT_CLIENT_AUTH Request
Title source: llmExploitation Summary
CVE-2005-0773 has been observed exploited in the wild (reported by VulnCheck KEV).
EIP tracks 2 public exploits from researchers including Metasploit, hdm, including a Metasploit module exploits/windows/backupexec/remote_agent.
AI-analyzed exploit summary This exploit targets a stack buffer overflow in Veritas Backup Exec Windows Agent (CVE-2005-0773) by sending a malformed authentication request with an overly long password, leading to SEH overwrite and arbitrary code execution.
Description
Stack-based buffer overflow in VERITAS Backup Exec Remote Agent 9.0 through 10.0 for Windows, and 9.0.4019 through 9.1.307 for Netware allows remote attackers to execute arbitrary code via a CONNECT_CLIENT_AUTH request with authentication method type 3 (Windows credentials) and a long password argument.
Exploits (2)
This exploit targets a stack buffer overflow in Veritas Backup Exec Windows Agent (CVE-2005-0773) by sending a malformed authentication request with an overly long password, leading to SEH overwrite and arbitrary code execution.
This Metasploit module exploits a stack buffer overflow in Veritas Backup Exec Windows Agent (CVE-2005-0773) by sending a malformed authentication request with an oversized password field, leveraging SEH overwrite for reliable code execution.