Path Traversal Vulnerability in Veritas NetBackup Product
CVE-2022-42305
5.3MEDIUM
Summary
A vulnerability has been identified in Veritas NetBackup and related products that exposes the system to a path traversal attack via the DiscoveryService service. This allows attackers to manipulate file paths, potentially leading to unauthorized access to sensitive files and data on the NetBackup Primary server. It is crucial for users of these products to implement recommended security measures to mitigate such risks.
References
CVSS V3.1
Score:
5.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved