Veritas Netbackup Appliance Firmware vulnerabilities
2 known vulnerabilities affecting veritas/netbackup_appliance_firmware.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2016-7399P2CRITICALCVSS 9.8v2.6.0.0v2.6.0.1+10 more2017-01-04
CVE-2016-7399 [CRITICAL] CWE-77 CVE-2016-7399: scripts/license.pl in Veritas NetBackup Appliance 2.6.0.x through 2.6.0.4, 2.6.1.x through 2.6.1.2,
scripts/license.pl in Veritas NetBackup Appliance 2.6.0.x through 2.6.0.4, 2.6.1.x through 2.6.1.2, 2.7.x through 2.7.3, and 3.0.x allow remote attackers to execute arbitrary commands via shell metacharacters in the hostName parameter to appliancews/getLicense.
nvd
CVE-2023-26788P4MEDIUMCVSS 6.1v4.1.0.12023-04-10
CVE-2023-26788 [MEDIUM] CWE-79 CVE-2023-26788: Veritas Appliance v4.1.0.1 is affected by Host Header Injection attacks. HTTP host header can be man
Veritas Appliance v4.1.0.1 is affected by Host Header Injection attacks. HTTP host header can be manipulated and cause the application to behave in unexpected ways. Any changes made to the header would just cause the request to be sent to a completely different Domain/IP address.
nvd