First published: Fri Apr 26 2024(Updated: )
An issue was discovered in Veritas Backup Exec before 22.2 HotFix 917391. The Backup Exec Deduplication Multi-threaded Streaming Agent can be leveraged to perform arbitrary file deletion on protected files.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Symantec Veritas Backup Exec | <22.2 HotFix 917391 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-33671 has a high severity rating due to its ability to facilitate arbitrary file deletion on protected files.
To remediate CVE-2024-33671, upgrade to Veritas Backup Exec version 22.2 HotFix 917391 or later.
CVE-2024-33671 affects Veritas Backup Exec versions prior to 22.2 HotFix 917391.
CVE-2024-33671 is a vulnerability that allows for arbitrary file deletion via the Backup Exec Deduplication Multi-threaded Streaming Agent.
Exploitation of CVE-2024-33671 can lead to loss of critical data by allowing attackers to delete protected files.