PT-2022-23701 · Veritas · Veritas Netbackup Opscenter

Published

2022-07-27

·

Updated

2022-08-03

·

CVE-2022-36954

CVSS v3.1

9.9

Critical

VectorAV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Veritas NetBackup OpsCenter versions 8.x through 8.3.0.2 Veritas NetBackup OpsCenter versions 9.x through 9.0.0.1 Veritas NetBackup OpsCenter versions 9.1.x through 9.1.0.1 Veritas NetBackup OpsCenter version 10
Description An authenticated remote attacker may be able to create or modify OpsCenter user accounts under specific conditions.
Recommendations For versions 8.x through 8.3.0.2, update to a version outside of this range to resolve the issue. For versions 9.x through 9.0.0.1, update to a version outside of this range to resolve the issue. For versions 9.1.x through 9.1.0.1, update to a version outside of this range to resolve the issue. For version 10, update to a version outside of this range to resolve the issue.

Fix

Related Identifiers

CVE-2022-36954

Affected Products

Veritas Netbackup Opscenter