7.2
CVSSv3

CVE-2019-14416

Published: 29/07/2019 Updated: 03/03/2023
CVSS v2 Base Score: 9 | Impact Score: 10 | Exploitability Score: 8
CVSS v3 Base Score: 7.2 | Impact Score: 5.9 | Exploitability Score: 1.2
VMScore: 801
Vector: AV:N/AC:L/Au:S/C:C/I:C/A:C

Vulnerability Summary

An issue exists in Veritas Resiliency Platform (VRP) prior to 3.4 HF1. An arbitrary command execution vulnerability allows a malicious VRP user to execute commands with root privilege within the VRP virtual machine, related to resiliency plans and custom script functionality.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

veritas resiliency platform

veritas resiliency platform 3.3.2

Mailing Lists

Four vulnerabilities have been fixed in VRP 34 HF1, one of which is of critical severity Directory traversal vulnerability related to uploading application bundles CVE-2019-14415 Critical severity Arbitrary command execution vulnerability with root privilege related to DNS server configuration CVE-2019-14416 High severity Arbitrary command exe ...