CVE-2022-36948: XSS
Published Jul 27, 2022
·Updated
In Veritas NetBackup OpsCenter, a DOM XSS attack can occur. This affects 8.x through 8.3.0.2, 9.x through 9.0.0.1, 9.1.x through 9.1.0.1, and 10.
Affected Software
4 affected components
Veritas NetBackup>=8.0<8.3.0.2
Veritas NetBackup=9.0
Veritas NetBackup=9.0.0.1
Veritas NetBackup=9.1.0.0
Event History
Jul 27, 2022
CVE Published
via MITRE·09:01 PM
Data Sourced
via MITRE·09:01 PM
DescriptionSeverity
Frequently Asked Questions
1
What is CVE-2022-36948?
CVE-2022-36948 is a vulnerability in Veritas NetBackup OpsCenter that allows for a DOM XSS attack.
2
How does CVE-2022-36948 affect the software?
CVE-2022-36948 affects Veritas NetBackup OpsCenter versions 8.x through 8.3.0.2, 9.x through 9.0.0.1, 9.1.x through 9.1.0.1, and 10.
3
What is the severity of CVE-2022-36948?
CVE-2022-36948 has a severity rating of 5.4 (medium).
4
How can I fix CVE-2022-36948?
To fix CVE-2022-36948, it is recommended to upgrade Veritas NetBackup OpsCenter to a version that is not affected.
5
Where can I find more information about CVE-2022-36948?
You can find more information about CVE-2022-36948 on the Veritas website: https://www.veritas.com/content/support/en_US/security/VTS22-009#Issue7