Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
veritas netbackup vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2023-37237
In Veritas NetBackup Appliance prior to 4.1.0.1 MR3, insecure permissions may allow an authenticated Admin to bypass shell restrictions and execute arbitrary operating system commands via SSH.
Veritas Netbackup Appliance 4.1.0.1
Veritas Netbackup Appliance
NA
CVE-2023-26788
Veritas Appliance v4.1.0.1 is affected by Host Header Injection attacks. HTTP host header can be manipulated and cause the application to behave in unexpected ways. Any changes made to the header would just cause the request to be sent to a completely different Domain/IP address.
Veritas Netbackup Appliance Firmware 4.1.0.1
NA
CVE-2023-26789
Veritas NetBackUp OpsCenter Version 9.1.0.1 is vulnerable to Reflected Cross-site scripting (XSS). The Web App fails to adequately sanitize special characters. By leveraging this issue, an attacker is able to cause arbitrary HTML and JavaScript code to be executed in a user'...
Veritas Netbackup Opscenter 9.1.0.1
NA
CVE-2023-28818
An issue exists in Veritas NetBackup IT Analytics 11 prior to 11.2.0. The application upgrade process included unsigned files that could be exploited and result in a customer installing unauthentic components. A malicious actor could install rogue Collector executable files (apta...
Veritas Netbackup It Analytics 11.1.00
Veritas Netbackup It Analytics 11.0.00
Veritas Aptare It Analytics
NA
CVE-2023-28758
An issue exists in Veritas NetBackup prior to 8.3.0.2. BPCD allows an unprivileged user to specify a log file path when executing a NetBackup command. This can be used to overwrite existing NetBackup log files.
Veritas Netbackup
NA
CVE-2023-28759
An issue exists in Veritas NetBackup prior to 10.0 on Windows. A vulnerability in the way the client validates the path to a DLL prior to loading may allow a lower-level user to elevate privileges and compromise the system.
Veritas Netbackup
NA
CVE-2022-46410
An issue exists in Veritas NetBackup Flex Scale up to and including 3.0. An attacker with non-root privileges may escalate privileges to root by using specific commands.
Veritas Netbackup Flex Scale Appliance
NA
CVE-2022-46411
An issue exists in Veritas NetBackup Flex Scale up to and including 3.0 and Access Appliance up to and including 8.0.100. A default password is persisted after installation and may be discovered and used to escalate privileges.
Veritas Netbackup Flex Scale Appliance
Veritas Access Appliance
NA
CVE-2022-46412
An issue exists in Veritas NetBackup Flex Scale up to and including 3.0. A non-privileged user may escape a restricted shell and execute privileged commands.
Veritas Netbackup Flex Scale Appliance
NA
CVE-2022-46413
An issue exists in Veritas NetBackup Flex Scale up to and including 3.0 and Access Appliance up to and including 8.0.100. Authenticated remote command execution can occur via the management portal.
Veritas Netbackup Flex Scale Appliance
Veritas Access Appliance
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-29895
blind SQL injection
CVE-2024-5064
CVE-2023-52677
CVE-2023-52682
CVE-2024-30051
CVE-2024-35849
remote attackers
remote
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »