This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Detail
Vendor Sukria First view 2005-07-11
Product Backup Manager Last view 2005-08-30
Version Type Application
Update  
Edition  
Language  
Sofware Edition  
Target Software  
Target Hardware  
Other  

Activity : Overall

COMMON PLATFORM ENUMERATION: Repartition per Version

CPE Name Affected CVE
cpe:2.3:a:sukria:backup_manager:0.5.8a:*:*:*:*:*:*:* 2
cpe:2.3:a:sukria:backup_manager:0.5.6:*:*:*:*:*:*:* 1
cpe:2.3:a:sukria:backup_manager:0.5.7:*:*:*:*:*:*:* 1

Related : CVE

  Date Alert Description
2.1 2005-08-30 CVE-2005-1855

Backup Manager (backup-manager) before 0.5.8 creates backup files with world-readable default permissions, which allows local users to obtain sensitive information.

6.4 2005-07-11 CVE-2005-2212

Backup Manager 0.5.8a creates an archive repository with world readable and writable permissions, which allows attackers to modify or read the repository.

4.6 2005-07-11 CVE-2005-2211

Backup Manager 0.5.8a creates temporary files insecurely, which allows local users to conduct unauthorized file operations when a user is burning a CDR.

Open Source Vulnerability Database (OSVDB)

id Description
17797 Backup Manager Unauthorized Archive Repository Access
17796 Backup Manager bm-cdrecord.log Symlink Arbitrary File Manipulation
17199 Backup Manager Unauthorized Archive Repository Access

OpenVAS Exploits

id Description
2008-01-17 Name : Debian Security Advisory DSA 787-1 (backup manager)
File : nvt/deb_787_1.nasl

Nessus® Vulnerability Scanner

id Description
2005-08-30 Name: The remote Debian host is missing a security-related update.
File: debian_DSA-787.nasl - Type: ACT_GATHER_INFO