Vulnerabilities > Veritas > Aptare

DATE CVE VULNERABILITY TITLE RISK
2020-10-15 CVE-2020-27157 Authentication Bypass by Capture-replay vulnerability in Veritas Aptare 10.4
Veritas APTARE versions prior to 10.5 included code that bypassed the normal login process when specific authentication credentials were provided to the server.
network
high complexity
veritas CWE-294
8.1
2020-10-15 CVE-2020-27156 Incorrect Authorization vulnerability in Veritas Aptare 10.4
Veritas APTARE versions prior to 10.5 did not perform adequate authorization checks.
network
low complexity
veritas CWE-863
critical
9.8
2020-05-14 CVE-2020-12877 Missing Authentication for Critical Function vulnerability in Veritas Aptare
Veritas APTARE versions prior to 10.4 allowed sensitive information to be accessible without authentication.
network
low complexity
veritas CWE-306
7.5
2020-05-14 CVE-2020-12876 Incorrect Authorization vulnerability in Veritas Aptare
Veritas APTARE versions prior to 10.4 allowed remote users to access several unintended files on the server.
network
low complexity
veritas CWE-863
7.5
2020-05-14 CVE-2020-12875 Incorrect Authorization vulnerability in Veritas Aptare
Veritas APTARE versions prior to 10.4 did not perform adequate authorization checks.
network
low complexity
veritas CWE-863
6.3
2020-05-14 CVE-2020-12874 Improper Authentication vulnerability in Veritas Aptare
Veritas APTARE versions prior to 10.4 included code that bypassed the normal login process when specific authentication credentials were provided to the server.
network
low complexity
veritas CWE-287
critical
9.8