CVE-2020-12874

Veritas APTARE versions prior to 10.4 included code that bypassed the normal login process when specific authentication credentials were provided to the server.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
mitreCNA
6.5 MEDIUM
NETWORK
LOW
NONE
CVSS:3.0/AC:L/AV:N/A:N/C:L/I:L/PR:N/S:U/UI:N
CVEADP
---
---