CVE-2024-33672: High severity netbackup enterprise server vulnerability
Published Apr 26, 2024
·Updated
An issue was discovered in Veritas NetBackup before 10.4. The Multi-Threaded Agent used in NetBackup can be leveraged to perform arbitrary file deletion on protected files.
Affected Software
2 affected components
Veritas NetBackup<10.4
Veritas NetBackup<10.4
Event History
Apr 26, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverity
Data Sourced
via NVD·02:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-33672?
CVE-2024-33672 is considered a high-severity vulnerability due to its potential for arbitrary file deletion.
2
How do I fix CVE-2024-33672?
To fix CVE-2024-33672, upgrade Veritas NetBackup to version 10.4 or later.
3
What is affected by CVE-2024-33672?
CVE-2024-33672 affects Veritas NetBackup versions prior to 10.4.
4
What type of vulnerability is CVE-2024-33672?
CVE-2024-33672 is a vulnerability that allows for arbitrary file deletion due to inadequate security in the Multi-Threaded Agent.
5
Can CVE-2024-33672 be exploited remotely?
Yes, CVE-2024-33672 can potentially be exploited remotely if the Multi-Threaded Agent is accessible.