CVE-2017-6403: Critical severity Veritas NetBackup vulnerability
Published Mar 2, 2017
·Updated
An issue was discovered in Veritas NetBackup Before 8.0 and NetBackup Appliance Before 3.0. NetBackup Cloud Storage Service uses a hardcoded username and password.
Affected Software
2 affected components
Veritas NetBackup<=8.0
Veritas NetBackup Appliance<=3.0
Event History
Mar 2, 2017
CVE Published
via MITRE·06:00 AM
Data Sourced
via MITRE·06:00 AM
Description
Data Sourced
via NVD·06:59 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2017-6403?
CVE-2017-6403 has a medium to high severity due to its hardcoded credentials, which can lead to unauthorized access.
2
How do I fix CVE-2017-6403?
To fix CVE-2017-6403, upgrade to the latest version of Veritas NetBackup or NetBackup Appliance that addresses this vulnerability.
3
What versions are affected by CVE-2017-6403?
CVE-2017-6403 affects Veritas NetBackup versions before 8.0 and NetBackup Appliance versions before 3.0.
4
What are the risks associated with CVE-2017-6403?
The risks associated with CVE-2017-6403 include potential unauthorized access and control over cloud storage services.
5
Is there a workaround for CVE-2017-6403?
There is no officially recommended workaround for CVE-2017-6403; upgrading to a patched version is advised.