CVE-2005-1009

BakBone NetVault <7 - Buffer Overflow

Title source: llm

Description

Multiple buffer overflows in BakBone NetVault 6.x and 7.x allow (1) remote attackers to execute arbitrary code via a modified computer name and length that leads to a heap-based buffer overflow, or (2) local users to execute arbitrary code via a long Name entry in the configure.cfg file.

Exploits (5)

exploitdb WORKING POC VERIFIED
by class101 · cremotewindows
https://www.exploit-db.com/exploits/906
exploitdb WORKING POC VERIFIED
by class101 · clocalwindows
https://www.exploit-db.com/exploits/905
exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/16448
exploitdb WORKING POC
cremotewindows
https://www.exploit-db.com/exploits/990
metasploit WORKING POC NORMAL
by hdm · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/misc/bakbone_netvault_heap.rb

Scores

EPSS 0.8352
EPSS Percentile 99.3%

Classification

Status draft

Affected Products (2)

bakbone/netvault
bakbone/netvault

Timeline

Published May 02, 2005
Tracked Since Feb 18, 2026