Known vulnerabilities in vSphere Data Protection 5.8.3

Vendor: Broadcom
Version: 5.8.3
Software CPE: cpe:2.3:a:broadcom:vsphere_data_protection:*:*:*:*:*:*:*:*
Total vulnerabilities: 6
Public exploits: 2
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting vSphere Data Protection version 5.8.3 vSphere Data Protection 5.8.3 is affected by 6 vulnerabilities: 3 high, 2 medium, 1 low Critical High Medium Low

Vulnerabilities (6)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU9827 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2017-15550
CWE-22 Medium
No
No
- 02.01.2018 SB2018010204
#VU9826 - Unrestricted Upload of File with Dangerous Type
CVE-2017-15549
CWE-434 Medium
No
No
- 02.01.2018 SB2018010204
#VU9825 - Improper Authentication
CVE-2017-15548
CWE-287 High
No
No
- 02.01.2018 SB2018010204
#VU6953 - Deserialization of Untrusted Data
CVE-2017-4914
CWE-502 High
Public exploit available
No
- 07.06.2017 SB2017060701
#VU6952 - Exposure of sensitive information to an unauthorized actor
CVE-2017-4917
CWE-200 Low
No
No
- 07.06.2017 SB2017060701
#VU39957 - Credentials Management
CVE-2016-7456
CWE-255 High
Public exploit available
No
- 29.12.2016 SB2016122904