The production release of the UniversalAgent for UNIX in BrightStor ARCserve Backup 11.1 contains hard-coded credentials, which allows remote attackers to access the file system and possibly execute arbitrary commands.
https://euvd.enisa.europa.eu/vulnerability/EUVD-2005-0350
http://www.vupen.com/english/advisories/2005/0145
http://www.securityfocus.com/bid/12522
http://www.idefense.com/application/poi/display?id=198&type=vulnerabilities
http://supportconnect.ca.com/sc/solcenter/sol_detail.jsp?aparno=QO63672&os=UNIX&returninput=0