First published: Sun Dec 04 2022(Updated: )
An issue was discovered in Veritas NetBackup Flex Scale through 3.0 and Access Appliance through 8.0.100. Unauthenticated remote command execution can occur via the management portal.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Veritas Access Appliance | <=8.0.100 | |
Veritas Netbackup Flex Scale Appliance | <=3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2022-46414.
The severity of CVE-2022-46414 is critical with a CVSS score of 9.8.
CVE-2022-46414 affects Veritas NetBackup Flex Scale through version 3.0 and Veritas Access Appliance through version 8.0.100.
The risk of CVE-2022-46414 is unauthenticated remote command execution via the management portal.
Yes, Veritas has released a security advisory with mitigation steps for CVE-2022-46414. Please refer to the following link: [https://www.veritas.com/content/support/en_US/security/VTS22-019#issue1](https://www.veritas.com/content/support/en_US/security/VTS22-019#issue1)