CVE Vulnerabilities

CVE-2022-36956

Published: Jul 27, 2022 | Modified: Aug 04, 2022
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

In Veritas NetBackup, the NetBackup Client allows arbitrary command execution from any remote host that has access to a valid host-id NetBackup certificate/private key from the same domain. The affects 9.0.x through 9.0.0.1 and 9.1.x through 9.1.0.1.

Affected Software

Name Vendor Start Version End Version
Netbackup Veritas 9.0 (including) 9.0 (including)
Netbackup Veritas 9.1.0.0 (including) 9.1.0.0 (including)

References