PT-2019-19903 · Veritas · Veritas Netbackup Appliance
Published
2019-03-19
·
Updated
2020-08-24
·
CVE-2019-9868
CVSS v3.1
7.2
High
| Vector | AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Veritas NetBackup Appliance versions through 3.1.2
Description
An issue in the Web Console of Veritas NetBackup Appliance causes the SMTP password to be displayed to an administrator.
Recommendations
For versions through 3.1.2, update to a version that contains a fix for this issue to prevent the SMTP password from being exposed to administrators.
Fix
Insufficiently Protected Credentials
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Veritas Netbackup Appliance