Vulnerabilities > Veritas > Medium

DATE CVE VULNERABILITY TITLE RISK
2017-03-02 CVE-2017-6408 Race Condition vulnerability in Veritas Netbackup and Netbackup Appliance
An issue was discovered in Veritas NetBackup 8.0 and earlier and NetBackup Appliance 3.0 and earlier.
4.4
2017-03-02 CVE-2017-6405 Authentication Bypass by Spoofing vulnerability in Veritas Netbackup and Netbackup Appliance
An issue was discovered in Veritas NetBackup 8.0 and earlier and NetBackup Appliance 3.0 and earlier.
network
low complexity
veritas CWE-290
5.0
2017-03-02 CVE-2017-6402 Unspecified vulnerability in Veritas Netbackup and Netbackup Appliance
An issue was discovered in Veritas NetBackup 8.0 and earlier and NetBackup Appliance 3.0 and earlier.
network
low complexity
veritas
4.0
2017-03-02 CVE-2017-6401 Improper Privilege Management vulnerability in Veritas Netbackup and Netbackup Appliance
An issue was discovered in Veritas NetBackup before 8.0 and NetBackup Appliance before 3.0.
local
low complexity
veritas CWE-269
4.6
2016-05-07 CVE-2015-6551 Information Exposure vulnerability in Veritas Netbackup and Netbackup Appliance
Veritas NetBackup 7.x through 7.5.0.7 and 7.6.0.x through 7.6.0.4 and NetBackup Appliance through 2.5.4 and 2.6.0.x through 2.6.0.4 do not use TLS for administration-console traffic to the NBU server, which allows remote attackers to obtain sensitive information by sniffing the network for key-exchange packets.
network
veritas CWE-200
4.3
2004-12-31 CVE-2004-1389 Privilege Escalation vulnerability in Veritas NetBackup
Unknown vulnerability in the Veritas NetBackup Administrative Assistant interface for NetBackup BusinesServer 3.4, 3.4.1, and 4.5, DataCenter 3.4, 3.4.1, and 4.5, Enterprise Server 5.1, and NetBackup Server 5.0 and 5.1, allows attackers to execute arbitrary commands via the bpjava-susvc process, possibly related to the call-back feature.
local
high complexity
veritas
6.0