EMC Retrospect Client Packet Handling Remote Overflow

This script is Copyright (C) 2006-2012 Tenable Network Security, Inc.

Synopsis :

It is possible to execute code on the remote backup client.

Description :

According to its version number, the installed instance of Retrospect
client is susceptible to a buffer overflow attack that can be
triggered by a packet starting with a specially crafted sequence of

An unauthenticated, remote attacker may be able to exploit this flaw to
execute code on the remote host.

See also :


Solution :

Upgrade to a newer version of Retrospect Client.

Risk factor :

High / CVSS Base Score : 7.5
CVSS Temporal Score : 5.5
Public Exploit Available : false

Family: Gain a shell remotely

Nessus Plugin ID: 21327 ()

Bugtraq ID: 17948

CVE ID: CVE-2006-2391