EMC Legato NetWorker, Solstice Backup 6.0 and 6.1, and StorEdge Enterprise Backup 6.0 through 7.2 do not properly verify authentication tokens, which allows remote attackers to gain privileges by modifying an authentication token.
https://exchange.xforce.ibmcloud.com/vulnerabilities/21892
http://www.securityfocus.com/bid/14582
http://www.legato.com/support/websupport/product_alerts/081605_NW_token_authentication.htm
http://www.kb.cert.org/vuls/id/407641
http://sunsolve.sun.com/search/document.do?assetkey=1-26-101886-1
http://securitytracker.com/id?1014713