CVE-2015-6551: Veritas Netbackup
Medium severity, CVSS 5.9. EPSS: 1.1% chance of exploitation in the next 30 days.
Veritas NetBackup 7.x through 7.5.0.7 and 7.6.0.x through 7.6.0.4 and NetBackup Appliance through 2.5.4 and 2.6.0.x through 2.6.0.4 do not use TLS for administration-console traffic to the NBU server, which allows remote attackers to obtain sensitive information by sniffing the network for key-exchange packets.
Affected products
- Veritas Netbackup: version 7.0 only; version 7.0.1 only; version 7.1.0.1 only; version 7.1.0.2 only; version 7.1.0.3 only; version 7.1.0.4 only; …
- Veritas Netbackup Appliance: version 1.1.0.1 only; version 1.1.0.2 only; version 1.2 only; version 2.0 only; version 2.0.1 only; version 2.0.2 only; …
Published 2016-05-07. Last modified 2026-06-17.