VendorsVMwarevsphere_data_protection6.1.1
Vulnerabilities

VMware vSphere Data Protection 6.1.1

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

7CVEs
CVE-2016-7456
VMware vSphere Data Protection (VDP) 5.5.x though 6.1.x has an SSH private key with a publicly known password, which makes it easier for remote attackers to obtain login access via an SSH session.
Published 2016-12-29 · Modified
10.0EPSS 0.328
CVE-2018-11066
Dell EMC Avamar and Integrated Data Protection Appliance Remote Code Execution Vulnerability
Published 2018-11-26 · Modified
10.0EPSS 0.099
CVE-2017-4914
VMware vSphere Data Protection (VDP) 6.1.x, 6.0.x, 5.8.x, and 5.5.x contains a deserialization issue. Exploitation of this issue may allow a remote attacker to execute commands on the appliance.
Published 2017-06-07 · Modified
9.81 PoCEPSS 0.088
CVE-2017-4917
VMware vSphere Data Protection (VDP) 6.1.x, 6.0.x, 5.8.x, and 5.5.x locally stores vCenter Server credentials using reversible encryption. This issue may allow plaintext credentials to be obtained.
Published 2017-06-07 · Modified
9.8EPSS 0.008
CVE-2018-11077
Dell EMC Avamar and Integrated Data Protection Appliance Command Injection Vulnerability
Published 2018-11-26 · Modified
7.2EPSS 0.010
CVE-2018-11076
Dell EMC Avamar and Integrated Data Protection Appliance Information Exposure Vulnerability
Published 2018-11-26 · Modified
6.5EPSS 0.008
CVE-2018-11067
Dell EMC Avamar and Integrated Data Protection Appliance Open Redirection Vulnerability
Published 2018-11-26 · Modified
6.1EPSS 0.018