PT-2017-17043 · Veritas · Veritas Netbackup Appliance+1
Published
2017-03-02
·
Updated
2019-10-03
·
CVE-2017-6404
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
Veritas NetBackup versions prior to 7.7
Veritas NetBackup Appliance versions prior to 2.7
Description
An issue was discovered that allows destruction or spoofing of log data due to world-writable log files.
Recommendations
For Veritas NetBackup versions prior to 7.7, update to version 7.7 or later.
For Veritas NetBackup Appliance versions prior to 2.7, update to version 2.7 or later.
Fix
Incorrect Default Permissions
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Veritas Netbackup
Veritas Netbackup Appliance