CVE-2022-42302: SQL Injection
Published Oct 3, 2022
·Updated
An issue was discovered in Veritas NetBackup through 10.0 and related Veritas products. The NetBackup Primary server is vulnerable to a SQL Injection attack affecting the NBFSMCLIENT service.
Affected Software
1 affected component
Veritas NetBackup<=10.0
Remediation
Event History
Oct 3, 2022
CVE Published
via MITRE·02:49 PM
Data Sourced
via MITRE·02:49 PM
DescriptionSeverity
Data Sourced
via NVD·03:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2022-42302.
2
What is the severity of CVE-2022-42302?
CVE-2022-42302 has a severity rating of critical.
3
Which software versions are affected by CVE-2022-42302?
NetBackup versions up to and including 10.0 are affected by CVE-2022-42302.
4
What is the impact of CVE-2022-42302?
CVE-2022-42302 allows for a SQL Injection attack on the NetBackup Primary server.
5
How can I fix CVE-2022-42302?
To fix CVE-2022-42302, it is recommended to apply the necessary updates or patches provided by Veritas.