First published: Tue Sep 30 2008(Updated: )
Unspecified vulnerability in the Java Administration GUI (jnbSA) in Symantec Veritas NetBackup Server and NetBackup Enterprise Server 5.1 before MP7, 6.0 before MP7, and 6.5 before 6.5.2 allows remote authenticated users to gain privileges via unknown attack vectors related to "bpjava* binaries."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Symantec NetBackup | =6.0 | |
Symantec Veritas NetBackup Enterprise Server | =6.0 | |
Symantec NetBackup | =6.5 | |
Symantec Veritas NetBackup Enterprise Server | =6.5 | |
Symantec Veritas NetBackup Enterprise Server | =5.1 | |
Symantec NetBackup | =5.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-4339 is classified as a moderate severity vulnerability that allows remote authenticated users to gain elevated privileges.
To remediate CVE-2008-4339, ensure you apply the latest patches such as MP7 for versions 5.1 and 6.0, or 6.5.2 for version 6.5 of Symantec NetBackup.
The affected versions in CVE-2008-4339 include Symantec NetBackup Server and Enterprise Server versions 5.1, 6.0, and 6.5 prior to specified maintenance packs.
CVE-2008-4339 can be exploited by remote authenticated users who have access to the Java Administration GUI of the affected Symantec products.
The impact of CVE-2008-4339 is that it may allow unauthorized privilege escalation, potentially compromising the integrity of the NetBackup system.