NA

CVE-2022-36997

Published: 28/07/2022 Updated: 08/08/2023
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

An issue exists in Veritas NetBackup 8.1.x up to and including 8.1.2, 8.2, 8.3.x up to and including 8.3.0.2, 9.x up to and including 9.0.0.1, and 9.1.x up to and including 9.1.0.1 (and related NetBackup products). An attacker with authenticated access to a NetBackup Client could remotely trigger impacts that include arbitrary file read, Server-Side Request Forgery (SSRF), and denial of service.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

veritas netbackup 9.1

veritas netbackup appliance 4.0.0.1

veritas netbackup appliance 4.1.0.1

veritas flex appliance 2.0

veritas flex appliance 2.0.1

veritas flex appliance 2.0.2

veritas flex appliance 2.1

veritas flex appliance 1.3

veritas netbackup 9.0

veritas netbackup 8.2

veritas netbackup appliance 3.3.0.1

veritas netbackup appliance 3.3.0.2

veritas netbackup appliance 3.2

veritas netbackup appliance 3.1.1

veritas netbackup appliance 3.1.2

veritas netbackup 9.0.0.1

veritas netbackup 9.1.0.1

veritas netbackup 8.1.2

veritas netbackup 8.1.1

veritas netbackup 8.3.0.1

veritas netbackup 8.3.0.2

veritas netbackup appliance 4.0

veritas netbackup appliance 4.1

veritas netbackup 8.3

veritas flex scale 1.3.1

veritas flex scale 2.1

veritas flex appliance 1.2