First published: Tue May 09 2017(Updated: )
In Veritas NetBackup 8.0 and earlier and NetBackup Appliance 3.0 and earlier, there is unauthenticated privileged remote file write using the 'bprd' process.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Veritas NetBackup | <=8.0 | |
Veritas NetBackup Appliance | <=3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-8858 is classified as a high-severity vulnerability due to its potential for unauthorized remote file writes.
To remediate CVE-2017-8858, upgrade Veritas NetBackup to version 8.1 or later and NetBackup Appliance to version 3.1 or later.
CVE-2017-8858 affects Veritas NetBackup versions up to 8.0 and NetBackup Appliance versions up to 3.0.
CVE-2017-8858 can be exploited via an unauthenticated remote attacker leveraging the 'bprd' process.
Exploitation of CVE-2017-8858 could allow an attacker to perform privileged file writes without authentication, potentially compromising the system.