Vulnerabilities > Veritas > Backup Exec

DATE CVE VULNERABILITY TITLE RISK
2021-03-01 CVE-2021-27878 Improper Authentication vulnerability in Veritas Backup Exec
An issue was discovered in Veritas Backup Exec before 21.2.
network
low complexity
veritas CWE-287
critical
9.0
2021-03-01 CVE-2021-27877 Improper Authentication vulnerability in Veritas Backup Exec
An issue was discovered in Veritas Backup Exec before 21.2.
network
low complexity
veritas CWE-287
7.5
2021-03-01 CVE-2021-27876 Improper Authentication vulnerability in Veritas Backup Exec
An issue was discovered in Veritas Backup Exec before 21.2.
network
low complexity
veritas CWE-287
7.5
2021-01-06 CVE-2020-36167 Unrestricted Upload of File with Dangerous Type vulnerability in Veritas Backup Exec 20.0/21.0
An issue was discovered in the server in Veritas Backup Exec through 16.2, 20.6 before hotfix 298543, and 21.1 before hotfix 657517.
local
low complexity
veritas CWE-434
7.2
2017-05-10 CVE-2017-8895 Use After Free vulnerability in Veritas Backup Exec 14.1.1786.1126/14.2.1180.3160/15.1180
In Veritas Backup Exec 2014 before build 14.1.1187.1126, 15 before build 14.2.1180.3160, and 16 before FP1, there is a use-after-free vulnerability in multiple agents that can lead to a denial of service or remote code execution.
network
low complexity
veritas CWE-416
critical
10.0
2005-06-28 CVE-2005-0772 NULL Pointer Dereference vulnerability in Veritas Backup Exec
VERITAS Backup Exec 9.0 through 10.0 for Windows Servers, and 9.0.4019 through 9.1.307 for Netware, allows remote attackers to cause a denial of service (Remote Agent crash) via (1) a crafted packet in NDMLSRVR.DLL or (2) a request packet with an invalid (non-0) "Error Status" value, which triggers a null dereference.
network
low complexity
veritas CWE-476
7.5