RSS   Vulnerabilities for 'Access'   RSS

2019-11-05
 
CVE-2019-18780

CWE-78
 

 
An arbitrary command injection vulnerability in the Cluster Server component of Veritas InfoScale allows an unauthenticated remote attacker to execute arbitrary commands as root or administrator. These Veritas products are affected: Access 7.4.2 and earlier, Access Appliance 7.4.2 and earlier, Flex Appliance 1.2 and earlier, InfoScale 7.3.1 and earlier, InfoScale between 7.4.0 and 7.4.1, Veritas Cluster Server (VCS) 6.2.1 and earlier on Linux/UNIX, Veritas Cluster Server (VCS) 6.1 and earlier on Windows, Storage Foundation HA (SFHA) 6.2.1 and earlier on Linux/UNIX, and Storage Foundation HA (SFHA) 6.1 and earlier on Windows.

 
2017-03-02
 
CVE-2017-6406

CWE-noinfo
 

 
An issue was discovered in Veritas NetBackup Before 7.7.2 and NetBackup Appliance Before 2.7.2. Arbitrary privileged command execution, using whitelist directory escape with "../" substrings, can occur.

 
 
CVE-2017-6400

CWE-noinfo
 

 
An issue was discovered in Veritas NetBackup Before 7.7.2 and NetBackup Appliance Before 2.7.2. Privileged command execution on NetBackup Server and Client can occur (on the local system).

 
 
CVE-2017-6399

CWE-noinfo
 

 
An issue was discovered in Veritas NetBackup Before 7.7.2 and NetBackup Appliance Before 2.7.2. Privileged remote command execution on NetBackup Server and Client (on the server or a connected client) can occur.

 

 >>> Vendor: Veritas 12 Products
Bare metal restore
Netbackup
Netbackup appliance
Netbackup appliance firmware
Access
System recovery
Backup exec
Resiliency platform
Access appliance
Flex appliance
Infoscale
Aptare


Copyright 2020, cxsecurity.com

 

Back to Top