Remote Command Execution Vulnerability in Veritas NetBackup
CVE-2022-36986

8.6HIGH

Key Information:

Vendor
Veritas
Vendor
CVE Published:
28 July 2022

Summary

A vulnerability has been identified in Veritas NetBackup that allows an attacker with unauthenticated access to remotely execute arbitrary commands on affected NetBackup Primary servers. This issue spans several versions, including 8.1.x through 8.1.2, 8.2, and 9.x up to 9.1.0.1, highlighting significant risk for users operating these versions. It is crucial for administrators to assess their systems and implement necessary security measures to safeguard against potential exploitation.

References

CVSS V3.1

Score:
8.6
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2022-36986 : Remote Command Execution Vulnerability in Veritas NetBackup | SecurityVulnerability.io