Vulnerabilities > Symantec Veritas > Medium

DATE CVE VULNERABILITY TITLE RISK
2008-02-21 CVE-2007-4516 Improper Input Validation vulnerability in Symantec Veritas Storage Foundation 5.0
The Volume Manager Scheduler Service (aka VxSchedService.exe) in Symantec Veritas Storage Foundation 5.0 for Windows allows remote attackers to cause a denial of service (daemon crash or hang) via malformed packets.
4.3
2006-08-14 CVE-2006-4128 Heap Overflow vulnerability in Symantec Backup Exec
Multiple heap-based buffer overflows in Symantec VERITAS Backup Exec for Netware Server Remote Agent for Windows Server 9.1 and 9.2 (all builds), Backup Exec Continuous Protection Server Remote Agent for Windows Server 10.1 (builds 10.1.325.6301, 10.1.326.1401, 10.1.326.2501, 10.1.326.3301, and 10.1.327.401), and Backup Exec for Windows Server and Remote Agent 9.1 (build 9.1.4691), 10.0 (builds 10.0.5484 and 10.0.5520), and 10.1 (build 10.1.5629) allow remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted RPC message.
network
low complexity
symantec-veritas
6.5
2006-03-19 CVE-2006-1298 Remote Format String vulnerability in Veritas Backup Exec Media Server BEngine Service Job Log
Format string vulnerability in the Job Engine service (bengine.exe) in the Media Server in Veritas Backup Exec 10d (10.1) for Windows Servers rev.
network
high complexity
symantec-veritas
4.6
2006-03-19 CVE-2006-1297 Remote Denial of Service vulnerability in Symantec Veritas Backup Exec and Backup Exec Remote Agent
Unspecified vulnerability in Veritas Backup Exec for Windows Server Remote Agent 9.1 through 10.1, for Netware Servers and Remote Agent 9.1 and 9.2, and Remote Agent for Linux Servers 10.0 and 10.1 allow attackers to cause a denial of service (application crash or unavailability) due to "memory errors."
network
low complexity
symantec-veritas
5.0
2005-11-16 CVE-2005-3566 Local Buffer Overflow vulnerability in VERITAS Cluster Server for UNIX
Buffer overflow in various ha commands of VERITAS Cluster Server for UNIX before 4.0MP2 allows local users to execute arbitrary code via a long VCSI18N_LANG environment variable to (1) haagent, (2) haalert, (3) haattr, (4) hacli, (5) hacli_runcmd, (6) haclus, (7) haconf, (8) hadebug, (9) hagrp, (10) hahb, (11) halog, (12) hareg, (13) hares, (14) hastatus, (15) hasys, (16) hatype, (17) hauser, and (18) tststew.
local
low complexity
symantec-veritas
4.3
2005-07-27 CVE-2005-2389 Denial-Of-Service vulnerability in Symantec Veritas Netbackup Enterprise Server and Netbackup Server
NDMP server in Veritas NetBackup 5.1 allows attackers to cause a denial of service via a CONFIG message with an out-of-range timestamp, which triggers a null dereference.
network
low complexity
symantec-veritas
5.0
2002-10-04 CVE-2002-1117 Denial-Of-Service vulnerability in Backup Exec
Veritas Backup Exec 8.5 and earlier requires that the "RestrictAnonymous" registry key for Microsoft Exchange 2000 must be set to 0, which enables anonymous listing of the SAM database and shares.
network
low complexity
symantec-veritas
5.0
2001-03-12 CVE-2001-0107 Denial of Service vulnerability in Symantec Veritas Backup 4.5
Veritas Backup agent on Linux allows remote attackers to cause a denial of service by establishing a connection without sending any data, which causes the process to hang.
network
low complexity
symantec-veritas
5.0