First published: Mon Nov 18 2024(Updated: )
An issue was discovered in Veritas NetBackup before 10.5. This only applies to NetBackup components running on a Windows Operating System. If a user executes specific NetBackup commands or an attacker uses social engineering techniques to impel the user to execute the commands, a malicious DLL could be loaded, resulting in execution of the attacker's code in the user's security context.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
NetBackup Enterprise Server | <10.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-52945 is considered a high-severity vulnerability due to the potential for arbitrary code execution.
To fix CVE-2024-52945, upgrade to Veritas NetBackup version 10.5 or later.
CVE-2024-52945 affects users of Veritas NetBackup running on Windows Operating System prior to version 10.5.
CVE-2024-52945 can be exploited through social engineering techniques and executing specific NetBackup commands.
CVE-2024-52945 specifically affects the Veritas NetBackup components that run on Windows Operating Systems.