CVE-2024-33671
- EPSS 0.1%
- Published 26.04.2024 02:15:06
- Last modified 30.06.2025 14:25:03
An issue was discovered in Veritas Backup Exec before 22.2 HotFix 917391. The Backup Exec Deduplication Multi-threaded Streaming Agent can be leveraged to perform arbitrary file deletion on protected files.
CVE-2024-33673
- EPSS 0.07%
- Published 26.04.2024 02:15:06
- Last modified 30.06.2025 14:22:57
An issue was discovered in Veritas Backup Exec before 22.2 HotFix 917391. Improper access controls allow for DLL Hijacking in the Windows DLL Search path.
CVE-2021-27876
- EPSS 0.72%
- Published 01.03.2021 22:15:14
- Last modified 07.03.2025 14:57:32
An issue was discovered in Veritas Backup Exec before 21.2. The communication between a client and an Agent requires successful authentication, which is typically completed over a secure TLS communication. However, due to a vulnerability in the SHA A...
CVE-2021-27877
- EPSS 2.75%
- Published 01.03.2021 22:15:14
- Last modified 07.03.2025 14:57:32
An issue was discovered in Veritas Backup Exec before 21.2. It supports multiple authentication schemes: SHA authentication is one of these. This authentication scheme is no longer used in current versions of the product, but hadn't yet been disabled...
- EPSS 2.95%
- Published 01.03.2021 22:15:14
- Last modified 07.03.2025 14:57:32
An issue was discovered in Veritas Backup Exec before 21.2. The communication between a client and an Agent requires successful authentication, which is typically completed over a secure TLS communication. However, due to a vulnerability in the SHA A...
CVE-2020-36167
- EPSS 0.05%
- Published 06.01.2021 01:15:13
- Last modified 21.11.2024 05:28:52
An issue was discovered in the server in Veritas Backup Exec through 16.2, 20.6 before hotfix 298543, and 21.1 before hotfix 657517. On start-up, it loads the OpenSSL library from the Installation folder. This library in turn attempts to load the /us...
- EPSS 67.06%
- Published 10.05.2017 21:29:00
- Last modified 20.04.2025 01:37:25
In Veritas Backup Exec 2014 before build 14.1.1187.1126, 15 before build 14.2.1180.3160, and 16 before FP1, there is a use-after-free vulnerability in multiple agents that can lead to a denial of service or remote code execution. An unauthenticated a...
CVE-2005-0772
- EPSS 11.27%
- Published 28.06.2005 04:00:00
- Last modified 03.04.2025 01:03:51
VERITAS Backup Exec 9.0 through 10.0 for Windows Servers, and 9.0.4019 through 9.1.307 for Netware, allows remote attackers to cause a denial of service (Remote Agent crash) via (1) a crafted packet in NDMLSRVR.DLL or (2) a request packet with an inv...