Vulnerabilities > Cohesity > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-01-19 CVE-2023-33295 Unspecified vulnerability in Cohesity Dataplatform
Cohesity DataProtect prior to 6.8.1_u5 or 7.1 was discovered to have a incorrect access control vulnerability due to a lack of TLS Certificate Validation.
network
low complexity
cohesity
6.5
2021-04-02 CVE-2021-28124 Missing Authentication for Critical Function vulnerability in Cohesity Dataplatform 6.3/6.4/6.5.1
A man-in-the-middle vulnerability in Cohesity DataPlatform support channel in version 6.3 up to 6.3.1g, 6.4 up to 6.4.1c and 6.5.1 through 6.5.1b.
network
high complexity
cohesity CWE-306
5.9