Known vulnerabilities in vSphere Data Protection 6.1.7
Vendor:
Broadcom
Software:
vSphere Data Protection
Version:
6.1.7
Software CPE:
cpe:2.3:a:broadcom:vsphere_data_protection:*:*:*:*:*:*:*:*
Website:
https://www.broadcom.com/
Total vulnerabilities:
4
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Vulnerabilities by Severity
Vulnerabilities (4)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU15991 - Exposure of sensitive information to an unauthorized actor CVE-2018-11077 |
CWE-200 | Low | 6.0.9, 6.1.10 | 21.11.2018 |
SB2018112112 |
||
| #VU15990 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2018-11076 |
CWE-78 | Low | 6.0.9, 6.1.9 | 21.11.2018 |
SB2018112112 |
||
| #VU15989 - URL Redirection to Untrusted Site ('Open Redirect') CVE-2018-11067 |
CWE-601 | Low | 6.0.9, 6.1.10 | 21.11.2018 |
SB2018112112 |
||
| #VU15988 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2018-11066 |
CWE-78 | High | 6.0.9, 6.1.10 | 21.11.2018 |
SB2018112112 |