
CVE-2015-6551
https://notcve.org/view.php?id=CVE-2015-6551
07 May 2016 — Veritas NetBackup 7.x through 7.5.0.7 and 7.6.0.x through 7.6.0.4 and NetBackup Appliance through 2.5.4 and 2.6.0.x through 2.6.0.4 do not use TLS for administration-console traffic to the NBU server, which allows remote attackers to obtain sensitive information by sniffing the network for key-exchange packets. Veritas NetBackup 7.x hasta la versión 7.5.0.7 y 7.6.0.x hasta la versión 7.6.0.4 y NetBackup Appliance hasta la versión 2.5.4 y 2.6.0.x hasta la versión 2.6.0.4 no utilizan TLS para el tráfico de la... • http://www.securitytracker.com/id/1035704 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVE-2015-6552
https://notcve.org/view.php?id=CVE-2015-6552
07 May 2016 — The management-services protocol implementation in Veritas NetBackup 7.x through 7.5.0.7, 7.6.0.x through 7.6.0.4, 7.6.1.x through 7.6.1.2, and 7.7.x before 7.7.2 and NetBackup Appliance through 2.5.4, 2.6.0.x through 2.6.0.4, 2.6.1.x through 2.6.1.2, and 2.7.x before 2.7.2 allows remote attackers to make arbitrary RPC calls via unspecified vectors. La implementación del protocolo management-services en Veritas NetBackup 7.x hasta la versión 7.5.0.7, 7.6.0.x hasta la versión 7.6.0.4, 7.6.1.x hasta la versió... • http://www.securitytracker.com/id/1035704 • CWE-284: Improper Access Control •

CVE-2013-1608
https://notcve.org/view.php?id=CVE-2013-1608
26 Mar 2013 — Directory traversal vulnerability in the Management Console on the Symantec NetBackup (NBU) appliance 2.0.x allows remote attackers to read arbitrary files via unspecified vectors. Vulnerabilidad de salto de directorio en Management Console del appliance Symantec NetBackup (NBU) v2.0.x, permite a atacantes remotos leer archivos de su elección a través de vectores no especificados. • http://www.securityfocus.com/bid/58542 • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •