Arbitrary Command Execution Vulnerability in Veritas NetBackup Client

Arbitrary Command Execution Vulnerability in Veritas NetBackup Client

CVE-2022-36956 · HIGH Severity

CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

In Veritas NetBackup, the NetBackup Client allows arbitrary command execution from any remote host that has access to a valid host-id NetBackup certificate/private key from the same domain. The affects 9.0.x through 9.0.0.1 and 9.1.x through 9.1.0.1.

Learn more about our Web Application Penetration Testing UK.