4.3
CVSSv2

CVE-2015-6551

Published: 07/05/2016 Updated: 01/12/2016
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 5.9 | Impact Score: 3.6 | Exploitability Score: 2.2
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

Veritas NetBackup 7.x up to and including 7.5.0.7 and 7.6.0.x up to and including 7.6.0.4 and NetBackup Appliance up to and including 2.5.4 and 2.6.0.x up to and including 2.6.0.4 do not use TLS for administration-console traffic to the NBU server, which allows remote malicious users to obtain sensitive information by sniffing the network for key-exchange packets.

Vulnerable Product Search on Vulmon Subscribe to Product

veritas netbackup appliance 2.6.1

veritas netbackup appliance 2.6.0.4

veritas netbackup appliance 2.5

veritas netbackup appliance 2.0.3

veritas netbackup appliance 2.7.1

veritas netbackup appliance 2.6.1.2

veritas netbackup appliance 2.6.1.1

veritas netbackup appliance 2.5.2

veritas netbackup appliance 2.5.1

veritas netbackup appliance 1.1.0.2

veritas netbackup appliance 1.1.0.1

veritas netbackup appliance 2.6.0.3

veritas netbackup appliance 2.6.0.2

veritas netbackup appliance 2.0.2

veritas netbackup appliance 2.0.1

veritas netbackup appliance 2.6

veritas netbackup appliance 2.5.3

veritas netbackup appliance 2.0

veritas netbackup appliance 1.2

veritas netbackup 7.7.1

veritas netbackup 7.5.0.5

veritas netbackup 7.5.0.4

veritas netbackup 7.0.1

veritas netbackup 7.0

veritas netbackup 7.5.0.7

veritas netbackup 7.5.0.6

veritas netbackup 7.1.0.2

veritas netbackup 7.1.0.1

veritas netbackup 7.6.1.2

veritas netbackup 7.6.1.1

veritas netbackup 7.5.0.3

veritas netbackup 7.5.0.1

veritas netbackup 7.6.0.4

veritas netbackup 7.6.0.3

veritas netbackup 7.6.0.2

veritas netbackup 7.1.0.4

veritas netbackup 7.1.0.3