First published: Wed Jul 27 2022(Updated: )
In Veritas NetBackup OpsCenter, certain endpoints could allow an unauthenticated remote attacker to gain sensitive information. This affects 8.x through 8.3.0.2, 9.x through 9.0.0.1, 9.1.x through 9.1.0.1, and 10.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Veritas NetBackup | >=8.0<8.3.0.2 | |
Veritas NetBackup | =9.0 | |
Veritas NetBackup | =9.1.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-36953 is a vulnerability in Veritas NetBackup OpsCenter that allows an unauthenticated remote attacker to gain sensitive information.
CVE-2022-36953 affects versions 8.x through 8.3.0.2, 9.x through 9.0.0.1, 9.1.x through 9.1.0.1, and 10 of Veritas NetBackup.
The severity of CVE-2022-36953 is medium with a CVSS score of 4.3.
An unauthenticated remote attacker can exploit CVE-2022-36953 by targeting certain endpoints in Veritas NetBackup OpsCenter.
Yes, Veritas has released a fix for CVE-2022-36953. It is recommended to update to the latest version of Veritas NetBackup.