CVE Vulnerabilities

CVE-2022-36990

Published: Jul 28, 2022 | Modified: Nov 21, 2024
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

An issue was discovered in Veritas NetBackup 8.1.x through 8.1.2, 8.2, 8.3.x through 8.3.0.2, 9.x through 9.0.0.1, and 9.1.x through 9.1.0.1 (and related NetBackup products). An attacker with authenticated access to a NetBackup Client could remotely write arbitrary files to arbitrary locations from any Client to any other Client via a Primary server.

Affected Software

NameVendorStart VersionEnd Version
Flex_applianceVeritas1.2 (including)1.2 (including)
Flex_applianceVeritas1.3 (including)1.3 (including)
Flex_applianceVeritas2.0 (including)2.0 (including)
Flex_applianceVeritas2.0.1 (including)2.0.1 (including)
Flex_applianceVeritas2.0.2 (including)2.0.2 (including)
Flex_applianceVeritas2.1 (including)2.1 (including)
Flex_scaleVeritas1.3.1 (including)1.3.1 (including)
Flex_scaleVeritas2.1 (including)2.1 (including)
NetbackupVeritas8.1.1 (including)8.1.1 (including)
NetbackupVeritas8.1.2 (including)8.1.2 (including)
NetbackupVeritas8.2 (including)8.2 (including)
NetbackupVeritas8.3 (including)8.3 (including)
NetbackupVeritas8.3.0.1 (including)8.3.0.1 (including)
NetbackupVeritas8.3.0.2 (including)8.3.0.2 (including)
NetbackupVeritas9.0 (including)9.0 (including)
NetbackupVeritas9.0.0.1 (including)9.0.0.1 (including)
NetbackupVeritas9.1 (including)9.1 (including)
NetbackupVeritas9.1.0.1 (including)9.1.0.1 (including)
Netbackup_applianceVeritas3.1.1 (including)3.1.1 (including)
Netbackup_applianceVeritas3.1.2 (including)3.1.2 (including)
Netbackup_applianceVeritas3.2 (including)3.2 (including)
Netbackup_applianceVeritas4.0 (including)4.0 (including)
Netbackup_applianceVeritas4.1 (including)4.1 (including)
Netbackup_applianceVeritas3.2-maintenance_release1 (including)3.2-maintenance_release1 (including)
Netbackup_applianceVeritas3.2-maintenance_release2 (including)3.2-maintenance_release2 (including)
Netbackup_applianceVeritas3.2-maintenance_release3 (including)3.2-maintenance_release3 (including)
Netbackup_applianceVeritas3.3.0.1-maintenance_release1 (including)3.3.0.1-maintenance_release1 (including)
Netbackup_applianceVeritas3.3.0.1-maintenance_release2 (including)3.3.0.1-maintenance_release2 (including)
Netbackup_applianceVeritas3.3.0.2-maintenance_release1 (including)3.3.0.2-maintenance_release1 (including)
Netbackup_applianceVeritas3.3.0.2-maintenance_release2 (including)3.3.0.2-maintenance_release2 (including)
Netbackup_applianceVeritas4.0.0.1-maintenance_release1 (including)4.0.0.1-maintenance_release1 (including)
Netbackup_applianceVeritas4.0.0.1-maintenance_release2 (including)4.0.0.1-maintenance_release2 (including)
Netbackup_applianceVeritas4.0.0.1-maintenance_release3 (including)4.0.0.1-maintenance_release3 (including)
Netbackup_applianceVeritas4.1.0.1-maintenance_release1 (including)4.1.0.1-maintenance_release1 (including)
Netbackup_applianceVeritas4.1.0.1-maintenance_release2 (including)4.1.0.1-maintenance_release2 (including)

References