Show filters
156 Total Results
Displaying 31-40 of 156
Sort by:
Attacker Value
Unknown
CVE-2022-42304
Disclosure Date: October 03, 2022 (last updated October 08, 2023)
An issue was discovered in Veritas NetBackup through 10.0 and related Veritas products. The NetBackup Primary server is vulnerable to a SQL Injection attack affecting idm, nbars, and SLP manager code.
0
Attacker Value
Unknown
CVE-2022-42303
Disclosure Date: October 03, 2022 (last updated October 08, 2023)
An issue was discovered in Veritas NetBackup through 10.0 and related Veritas products. The NetBackup Primary server is vulnerable to a second-order SQL Injection attack affecting the NBFSMCLIENT service by leveraging CVE-2022-42302.
0
Attacker Value
Unknown
CVE-2022-42302
Disclosure Date: October 03, 2022 (last updated October 08, 2023)
An issue was discovered in Veritas NetBackup through 10.0 and related Veritas products. The NetBackup Primary server is vulnerable to a SQL Injection attack affecting the NBFSMCLIENT service.
0
Attacker Value
Unknown
CVE-2022-42301
Disclosure Date: October 03, 2022 (last updated October 08, 2023)
An issue was discovered in Veritas NetBackup through 10.0.0.1 and related Veritas products. The NetBackup Primary server is vulnerable to an XML External Entity (XXE) injection attack through the nbars process.
0
Attacker Value
Unknown
CVE-2022-42300
Disclosure Date: October 03, 2022 (last updated October 08, 2023)
An issue was discovered in Veritas NetBackup through 10.0.0.1 and related Veritas products. The NetBackup Primary server nbars process can be crashed resulting in a denial of service. (Note: the watchdog service will automatically restart the process.)
0
Attacker Value
Unknown
CVE-2022-42299
Disclosure Date: October 03, 2022 (last updated October 08, 2023)
An issue was discovered in Veritas NetBackup through 10.0.0.1 and related Veritas products. The NetBackup Primary server is vulnerable to a denial of service attack through the DiscoveryService service.
0
Attacker Value
Unknown
CVE-2022-41320
Disclosure Date: September 23, 2022 (last updated October 08, 2023)
Veritas System Recovery (VSR) versions 18 and 21 store a network destination password in the Windows registry during configuration of the backup configuration. This vulnerability could provide a Windows user (who has sufficient privileges) to access a network file system that they were not authorized to access.
0
Attacker Value
Unknown
CVE-2022-41319
Disclosure Date: September 23, 2022 (last updated November 29, 2024)
A Reflected Cross-Site Scripting (XSS) vulnerability affects the Veritas Desktop Laptop Option (DLO) application login page (aka the DLOServer/restore/login.jsp URI). This affects versions before 9.8 (e.g., 9.1 through 9.7).
0
Attacker Value
Unknown
CVE-2022-37000
Disclosure Date: July 28, 2022 (last updated October 08, 2023)
An issue was discovered in Veritas NetBackup 8.1.x through 8.1.2, 8.2, 8.3.x through 8.3.0.2, 9.x through 9.0.0.1, and 9.1.x through 9.1.0.1 (and related NetBackup products). Under certain conditions, an attacker with authenticated access to a NetBackup Client could remotely read files on a NetBackup Primary server.
0
Attacker Value
Unknown
CVE-2022-36999
Disclosure Date: July 28, 2022 (last updated October 08, 2023)
An issue was discovered in Veritas NetBackup 8.1.x through 8.1.2, 8.2, 8.3.x through 8.3.0.2, 9.x through 9.0.0.1, and 9.1.x through 9.1.0.1 (and related NetBackup products). Under certain conditions, an attacker with authenticated access to a NetBackup Client could remotely read files on a NetBackup Primary server.
0