CVE-2024-52945: Code Injection
An issue was discovered in Veritas NetBackup before 10.5. This only applies to NetBackup components running on a Windows Operating System. If a user executes specific NetBackup commands or an attacker uses social engineering techniques to impel the user to execute the commands, a malicious DLL could be loaded, resulting in execution of the attacker's code in the user's security context.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-52945?
CVE-2024-52945 is considered a high-severity vulnerability due to the potential for arbitrary code execution.
How do I fix CVE-2024-52945?
To fix CVE-2024-52945, upgrade to Veritas NetBackup version 10.5 or later.
Who is affected by CVE-2024-52945?
CVE-2024-52945 affects users of Veritas NetBackup running on Windows Operating System prior to version 10.5.
What type of attack is associated with CVE-2024-52945?
CVE-2024-52945 can be exploited through social engineering techniques and executing specific NetBackup commands.
What components of Veritas NetBackup are affected by CVE-2024-52945?
CVE-2024-52945 specifically affects the Veritas NetBackup components that run on Windows Operating Systems.