← Vulnerability feed

Vulnerability record · CVE-2006-4128 · published 14 August 2006

CVE-2006-4128: Symantec veritas backup exec vulnerability

SSymantec Veritas · Backup Exec

Multiple heap-based buffer overflows in Symantec VERITAS Backup Exec for Netware Server Remote Agent for Windows Server 9.1 and 9.2 (all builds), Backup Exec Continuous Protection Server Remote Agent for Windows Server 10.1 (builds 10.1.325.6301, 10.1.326.1401, 10.1.326.2501, 10.1.326.3301, and 10.1.327.401), and Backup Exec for Windows Server and Remote Agent 9.1 (build 9.1.4691), 10.0 (builds 10.0.5484 and 10.0.5520), and 10.1 (build 10.1.5629) allow remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted RPC message.

6.5 CVSS 2.0 Medium EPSS 5.8% · top 7.1%
6.5CVSS 2.0 base score
5.8%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
20References
16 Jun 2026Last modified by NVD

Description

Multiple heap-based buffer overflows in Symantec VERITAS Backup Exec for Netware Server Remote Agent for Windows Server 9.1 and 9.2 (all builds), Backup Exec Continuous Protection Server Remote Agent for Windows Server 10.1 (builds 10.1.325.6301, 10.1.326.1401, 10.1.326.2501, 10.1.326.3301, and 10.1.327.401), and Backup Exec for Windows Server and Remote Agent 9.1 (build 9.1.4691), 10.0 (builds 10.0.5484 and 10.0.5520), and 10.1 (build 10.1.5629) allow remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted RPC message.

AV:N/AC:L/Au:S/C:P/I:P/A:P

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2006-4128 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2005-2611VERITAS Backup Exec and NetBackup NDMP agent static password flawThe NDMP agent in VERITAS Backup Exec for Windows Servers 8.6 through 10.0, Backup Exec for NetWare Servers 9.0 and 9.1, and NetBackup for NetWare Me…EPSS 87%analysed10.0CVE-2005-0771VERITAS Backup Exec Server RPC interface allows unauthenticated registry modificationThe VERITAS Backup Exec Server (beserver.exe) versions 9.0 through 10.0 for Windows exposes an RPC interface on TCP port 6106 that permits remote, un…EPSS 54%analysed10.0CVE-2004-1172Veritas Backup Exec Agent Browser stack buffer overflow via long hostnameThe Agent Browser component in Veritas Backup Exec 8.x and 9.x has a stack-based buffer overflow triggered by a registration request containing an ov…EPSS 82%analysed7.5CVE-2005-2079Symantec veritas backup exec vulnerabilityHeap-based buffer overflow in the Admin Plus Pack Option for VERITAS Backup Exec 9.0 through 10.0 for Windows Servers allows remote attackers to exec…EPSS 5.2%7.5CVE-2005-2080Symantec veritas backup exec vulnerabilityUnknown vulnerability in Remote Agent for Windows Servers (RAWS) in VERITAS Backup Exec 9.0 through 10.0 for Windows, and 9.0.4019 through 9.1.307 fo…EPSS 1.5%7.5CVE-2005-2051Symantec veritas backup exec vulnerabilityBuffer overflow in the VERITAS Backup Exec Web Administration Console (BEWAC) 9.0 4367 through 10.0 rev. 5484 allows remote attackers to execute arbi…EPSS 3.2%7.5CVE-2005-0773VERITAS Backup Exec Remote Agent stack buffer overflow via CONNECT_CLIENT_AUTHVERITAS Backup Exec Remote Agent (9.0 through 10.0 on Windows, 9.0.4019 through 9.1.307 on NetWare) has a stack-based buffer overflow triggered by a …EPSS 86%analysed5.0CVE-2006-1297Symantec veritas backup exec vulnerabilityUnspecified vulnerability in Veritas Backup Exec for Windows Server Remote Agent 9.1 through 10.1, for Netware Servers and Remote Agent 9.1 and 9.2, …EPSS 2.2%

Source: NIST National Vulnerability Database (record CVE-2006-4128), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.