CVE-2018-18652: Critical severity symantec netbackup appliance vulnerability
Published Oct 25, 2018
·Updated
A remote command execution vulnerability in Veritas NetBackup Appliance before 3.1.2 allows authenticated administrators to execute arbitrary commands as root. This issue was caused by insufficient filtering of user provided input.
Affected Software
1 affected component
Veritas NetBackup Appliance<3.1.2
Event History
Oct 25, 2018
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
Description
Frequently Asked Questions
1
What is CVE-2018-18652?
CVE-2018-18652 is a remote command execution vulnerability in Veritas NetBackup Appliance before 3.1.2 that allows authenticated administrators to execute arbitrary commands as root.
2
How does CVE-2018-18652 affect Veritas NetBackup Appliance?
CVE-2018-18652 affects Veritas NetBackup Appliance versions before 3.1.2.
3
What is the severity of CVE-2018-18652?
The severity of CVE-2018-18652 is critical.
4
What is the impact of CVE-2018-18652?
CVE-2018-18652 allows authenticated administrators to execute arbitrary commands as root.
5
How can I fix CVE-2018-18652?
To fix CVE-2018-18652, update Veritas NetBackup Appliance to version 3.1.2 or later.