Vulnerabilities > Veritas

DATE CVE VULNERABILITY TITLE RISK
2020-10-15 CVE-2020-27157 Authentication Bypass by Capture-replay vulnerability in Veritas Aptare 10.4
Veritas APTARE versions prior to 10.5 included code that bypassed the normal login process when specific authentication credentials were provided to the server.
network
high complexity
veritas CWE-294
8.1
2020-10-15 CVE-2020-27156 Incorrect Authorization vulnerability in Veritas Aptare 10.4
Veritas APTARE versions prior to 10.5 did not perform adequate authorization checks.
network
low complexity
veritas CWE-863
critical
9.8
2020-05-14 CVE-2020-12877 Missing Authentication for Critical Function vulnerability in Veritas Aptare
Veritas APTARE versions prior to 10.4 allowed sensitive information to be accessible without authentication.
network
low complexity
veritas CWE-306
7.5
2020-05-14 CVE-2020-12876 Incorrect Authorization vulnerability in Veritas Aptare
Veritas APTARE versions prior to 10.4 allowed remote users to access several unintended files on the server.
network
low complexity
veritas CWE-863
7.5
2020-05-14 CVE-2020-12875 Incorrect Authorization vulnerability in Veritas Aptare
Veritas APTARE versions prior to 10.4 did not perform adequate authorization checks.
network
low complexity
veritas CWE-863
6.3
2020-05-14 CVE-2020-12874 Improper Authentication vulnerability in Veritas Aptare
Veritas APTARE versions prior to 10.4 included code that bypassed the normal login process when specific authentication credentials were provided to the server.
network
low complexity
veritas CWE-287
critical
9.8
2019-11-05 CVE-2019-18780 Command Injection vulnerability in Veritas products
An arbitrary command injection vulnerability in the Cluster Server component of Veritas InfoScale allows an unauthenticated remote attacker to execute arbitrary commands as root or administrator.
network
low complexity
veritas CWE-77
critical
9.8
2019-07-29 CVE-2019-14418 Path Traversal vulnerability in Veritas Resiliency Platform
An issue was discovered in Veritas Resiliency Platform (VRP) before 3.4 HF1.
network
low complexity
veritas CWE-22
8.8
2019-07-29 CVE-2019-14417 Unspecified vulnerability in Veritas Resiliency Platform
An issue was discovered in Veritas Resiliency Platform (VRP) before 3.4 HF1.
network
low complexity
veritas
7.2
2019-07-29 CVE-2019-14416 Unspecified vulnerability in Veritas Resiliency Platform
An issue was discovered in Veritas Resiliency Platform (VRP) before 3.4 HF1.
network
low complexity
veritas
7.2