An issue was discovered in Veritas NetBackup 8.1.x through 8.1.2, 8.2, 8.3.x through 8.3.0.2, 9.x through 9.0.0.1, and 9.1.x through 9.1.0.1 (and related NetBackup products). An attacker with authenticated access to a NetBackup Client could remotely execute arbitrary commands on a NetBackup Primary server (in specific notify conditions).
References
Link | Resource |
---|---|
https://www.veritas.com/content/support/en_US/security/VTS22-004#c1 | Patch Vendor Advisory |
https://www.veritas.com/content/support/en_US/security/VTS22-004#c1 | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 07:14
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.veritas.com/content/support/en_US/security/VTS22-004#c1 - Patch, Vendor Advisory | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.9 |
09 Aug 2022, 15:54
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:h:veritas:netbackup_appliance:4.0.0.1:maintenance_release1:*:*:*:*:*:* cpe:2.3:a:veritas:netbackup_appliance:3.1.1:*:*:*:*:*:*:* cpe:2.3:a:veritas:flex_appliance:2.0.2:*:*:*:*:*:*:* cpe:2.3:a:veritas:netbackup:8.3.0.1:*:*:*:*:*:*:* cpe:2.3:h:veritas:netbackup_appliance:3.2:maintenance_release1:*:*:*:*:*:* cpe:2.3:a:veritas:netbackup:8.2:*:*:*:*:*:*:* cpe:2.3:h:veritas:netbackup_appliance:3.3.0.1:maintenance_release1:*:*:*:*:*:* cpe:2.3:a:veritas:netbackup_appliance:4.0:*:*:*:*:*:*:* cpe:2.3:h:veritas:netbackup_appliance:4.1.0.1:maintenance_release2:*:*:*:*:*:* cpe:2.3:h:veritas:netbackup_appliance:3.3.0.1:maintenance_release2:*:*:*:*:*:* cpe:2.3:a:veritas:netbackup:9.0:*:*:*:*:*:*:* cpe:2.3:a:veritas:netbackup:9.1.0.1:*:*:*:*:*:*:* cpe:2.3:h:veritas:netbackup_appliance:4.1.0.1:maintenance_release1:*:*:*:*:*:* cpe:2.3:h:veritas:netbackup_appliance:4.0.0.1:maintenance_release3:*:*:*:*:*:* cpe:2.3:a:veritas:netbackup_appliance:3.2:*:*:*:*:*:*:* cpe:2.3:a:veritas:flex_appliance:1.3:*:*:*:*:*:*:* cpe:2.3:h:veritas:netbackup_appliance:3.3.0.2:maintenance_release2:*:*:*:*:*:* cpe:2.3:a:veritas:netbackup:8.1.2:*:*:*:*:*:*:* cpe:2.3:a:veritas:netbackup_appliance:4.1:*:*:*:*:*:*:* cpe:2.3:a:veritas:flex_appliance:2.0.1:*:*:*:*:*:*:* cpe:2.3:a:veritas:netbackup:8.3.0.2:*:*:*:*:*:*:* cpe:2.3:h:veritas:netbackup_appliance:3.2:maintenance_release2:*:*:*:*:*:* cpe:2.3:a:veritas:flex_scale:1.3.1:*:*:*:*:*:*:* cpe:2.3:a:veritas:netbackup:9.1:*:*:*:*:*:*:* cpe:2.3:h:veritas:netbackup_appliance:3.3.0.2:maintenance_release1:*:*:*:*:*:* cpe:2.3:a:veritas:flex_scale:2.1:*:*:*:*:*:*:* cpe:2.3:h:veritas:netbackup_appliance:4.0.0.1:maintenance_release2:*:*:*:*:*:* cpe:2.3:a:veritas:flex_appliance:2.0:*:*:*:*:*:*:* cpe:2.3:a:veritas:flex_appliance:1.2:*:*:*:*:*:*:* cpe:2.3:a:veritas:flex_appliance:2.1:*:*:*:*:*:*:* cpe:2.3:a:veritas:netbackup:9.0.0.1:*:*:*:*:*:*:* cpe:2.3:h:veritas:netbackup_appliance:3.2:maintenance_release3:*:*:*:*:*:* cpe:2.3:a:veritas:netbackup:8.1.1:*:*:*:*:*:*:* cpe:2.3:a:veritas:netbackup_appliance:3.1.2:*:*:*:*:*:*:* cpe:2.3:a:veritas:netbackup:8.3:*:*:*:*:*:*:* |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.8 |
CWE | NVD-CWE-noinfo | |
References | (MISC) https://www.veritas.com/content/support/en_US/security/VTS22-004#c1 - Patch, Vendor Advisory |
28 Jul 2022, 01:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2022-07-28 01:15
Updated : 2024-11-21 07:14
NVD link : CVE-2022-36992
Mitre link : CVE-2022-36992
CVE.ORG link : CVE-2022-36992
JSON object : View
Products Affected
veritas
- flex_scale
- netbackup_appliance
- netbackup
- flex_appliance
CWE