No vulnerabilities exist in 6.5.5 that I'm aware of. If this was an upgrade from an earlier version it's highly possible that they had exploited the old version and possibly left a backdoor. Did you recently upgrade from an older version?