PT-2024-25430 · Veritas · Veritas Netbackup

Published

2024-04-26

·

Updated

2025-11-20

·

CVE-2024-33672

CVSS v3.1

7.7

High

VectorAC:L/AV:L/A:H/C:N/I:H/PR:N/S:U/UI:N
Name of the Vulnerable Software and Affected Versions Veritas NetBackup versions prior to 10.4
Description An issue was discovered in Veritas NetBackup that allows the Multi-Threaded Agent to be used for arbitrary file deletion on protected files.
Recommendations For versions prior to 10.4, update to version 10.4 or later to resolve the issue.

Fix

Uncontrolled Search Path Element

Weakness Enumeration

Related Identifiers

CVE-2024-33672

Affected Products

Veritas Netbackup