NA

CVE-2024-28222

Published: 07/03/2024 Updated: 07/03/2024

Vulnerability Summary

In Veritas NetBackup prior to 8.1.2 and NetBackup Appliance prior to 3.1.2, the BPCD process inadequately validates the file path, allowing an unauthenticated malicious user to upload and execute a custom file.

Vulnerability Trend

Github Repositories

Proof of concept CVE-2024-28222 Veritas NetBackup RCE exploit CVSS-9.8

CVE-2024-28222-NetBackup-RCE-exploit Proof of concept CVE-2024-28222 Veritas NetBackup RCE exploit CVSS-98