[Full-disclosure] BakBone products multiple vulnerabilities

class101@HAT-SQUAD.com class101 at hat-squad.com
Fri Apr 1 14:31:11 BST 2005


The Hat-Squad has found 2 exploitable vulnerabilities affecting BakBone
NetVault Backup Software 6.x/7.x
At this moment writing this advisory, no decent communications were
established with the BakBone technicians, we recommand to set strict ACL
rules on the files configure.cfg and to filter all incoming connections to
20031/tcp and 20031/udp.

class101.org/netv-locsbof.pdf
class101.org/netv-remhbof.pdf

-------------------------------------------------------------
class101
Jr. Researcher
Hat-Squad.com
-------------------------------------------------------------




Full-Disclosure is hosted and sponsored by Secunia.