First published: Sun Dec 04 2022(Updated: )
An issue was discovered in Veritas NetBackup Flex Scale through 3.0 and Access Appliance through 8.0.100. A default password is persisted after installation and may be discovered and used to escalate privileges.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Veritas Access Appliance | <=8.0.100 | |
Veritas Netbackup Flex Scale Appliance | <=3.0 | |
<=8.0.100 | ||
<=3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2022-46411.
The severity level of CVE-2022-46411 is high with a CVSS score of 8.8.
The affected software for CVE-2022-46411 includes Veritas NetBackup Flex Scale through 3.0 and Veritas Access Appliance up to version 8.0.100.
CVE-2022-46411 is a vulnerability in Veritas NetBackup Flex Scale and Veritas Access Appliance that allows an attacker to escalate privileges using a default password.
Yes, Veritas has released a security advisory with instructions to address the issue. Please refer to their advisory for the necessary steps.