Known vulnerabilities in Unified Data Protection 6.5 Update 3

Vendor: Arcserve
Version: 6.5 Update 3
Software CPE: cpe:2.3:a:arcserve:united_data_:*:*:*:*:*:*:*:*
Total vulnerabilities: 4
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 6.9

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Unified Data Protection version 6.5 Update 3 Unified Data Protection 6.5 Update 3 is affected by 4 vulnerabilities: 4 low Critical High Medium Low

Vulnerabilities (4)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU15524 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CWE-79 Low
No
No
- 25.10.2018 SB2018102503
#VU15523 - Exposure of sensitive information to an unauthorized actor
CWE-200 Low
No
No
- 25.10.2018 SB2018102503
#VU15522 - Exposure of sensitive information to an unauthorized actor
CWE-200 Low
No
No
- 25.10.2018 SB2018102503
#VU15521 - Improper Restriction of XML External Entity Reference ('XXE')
CWE-611 Low
No
No
- 25.10.2018 SB2018102503