Known vulnerabilities in Unified Data Protection 6.5 Update 3
Vendor:
Arcserve
Software:
Unified Data Protection
Version:
6.5 Update 3
Software CPE:
cpe:2.3:a:arcserve:united_data_:*:*:*:*:*:*:*:*
Website:
https://www.arcserve.com/
Total vulnerabilities:
4
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
6.9
Vulnerabilities by Severity
Vulnerabilities (4)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU15524 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') |
CWE-79 | Low | - | 25.10.2018 |
SB2018102503 |
||
| #VU15523 - Exposure of sensitive information to an unauthorized actor |
CWE-200 | Low | - | 25.10.2018 |
SB2018102503 |
||
| #VU15522 - Exposure of sensitive information to an unauthorized actor |
CWE-200 | Low | - | 25.10.2018 |
SB2018102503 |
||
| #VU15521 - Improper Restriction of XML External Entity Reference ('XXE') |
CWE-611 | Low | - | 25.10.2018 |
SB2018102503 |