Back

CVE-2005-2715

Format string vulnerability in the Java user interface service (bpjava-msvc) daemon for VERITAS NetBackup Data and Business Center 4.5FP and 4.5MP, and NetBackup Enterprise/Server/Client 5.0, 5.1, and 6.0, allows remote attackers to execute arbitrary code via the COMMAND_LOGON_TO_MSERVER command.

Published: Oct 12, 2005 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (5)

Vendor Product Version
symantec_veritas netbackup_data_and_business_center 4.5fp
symantec_veritas netbackup_data_and_business_center 4.5mp
symantec_veritas netbackup_enterprise_server_client 5.0
symantec_veritas netbackup_enterprise_server_client 5.1
symantec_veritas netbackup_enterprise_server_client 6.0

GitHub Security Advisory GHSA-wrmq-w546-pmhv

Format string vulnerability in the Java user interface service (bpjava-msvc) daemon for VERITAS...

Risk Scores

CVSS Score 10.0 / 10
EPSS Score 60.36%

Top 1% most likely to be exploited

Threat Score 58.1 / 100

Data Sources

NVD EPSS GitHub