XML External Entity (XXE) Injection Vulnerability in Veritas NetBackup

XML External Entity (XXE) Injection Vulnerability in Veritas NetBackup

CVE-2022-42301 · HIGH Severity

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

An issue was discovered in Veritas NetBackup through 10.0.0.1 and related Veritas products. The NetBackup Primary server is vulnerable to an XML External Entity (XXE) injection attack through the nbars process.

Learn more about our Cis Benchmark Audit For Server Software.