📦 Enterprise Vault

by Veritas

🔍 What is Enterprise Vault?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-53911

CRITICAL CVSS 9.8 Nov 24, 2024

This vulnerability allows remote attackers to execute arbitrary code on Veritas Enterprise Vault servers by sending malicious data to a .NET Remoting TCP port. The issue affects all versions before 15...

CVE-2024-53913

CRITICAL CVSS 9.8 Nov 24, 2024

This vulnerability allows remote attackers to execute arbitrary code on Veritas Enterprise Vault servers by sending malicious data to a .NET Remoting TCP port. The issue stems from deserialization of ...

CVE-2024-53915

CRITICAL CVSS 9.8 Nov 24, 2024

This vulnerability allows remote attackers to execute arbitrary code on Veritas Enterprise Vault servers by sending malicious data to a .NET Remoting TCP port. The issue affects all versions before 15...

CVE-2021-44680

CRITICAL CVSS 9.8 Dec 6, 2021

This vulnerability allows remote code execution on Veritas Enterprise Vault servers through insecure .NET Remoting services. Attackers can exploit deserialization flaws in TCP services that listen on ...

CVE-2021-44682

CRITICAL CVSS 9.8 Dec 6, 2021

This vulnerability allows remote code execution on Veritas Enterprise Vault servers through insecure .NET Remoting TCP ports. Attackers can exploit deserialization flaws in the remoting services to ex...

CVE-2021-44678

CRITICAL CVSS 9.8 Dec 6, 2021

This vulnerability in Veritas Enterprise Vault allows remote code execution through insecure .NET Remoting services that deserialize untrusted data. Attackers can exploit both TCP and local IPC servic...

CVE-2020-36164

CRITICAL CVSS 9.3 Jan 6, 2021

This vulnerability allows low-privileged users to achieve arbitrary code execution as SYSTEM by planting a malicious OpenSSL configuration file. It affects Veritas Enterprise Vault servers with specif...

CVE-2024-52943

MEDIUM CVSS 5.4 Nov 18, 2024

This vulnerability allows authenticated remote attackers to inject malicious scripts into HTTP parameters when viewing archived content in Veritas Enterprise Vault. The reflected cross-site scripting ...