cbcvebase.
CVE-2022-36955
published 2022-07-27

CVE-2022-36955: In Veritas NetBackup, an attacker with unprivileged local access to a NetBackup Client may send specific commands to escalate their privileges. This affects…

PriorityP342high8.4CVSS 3.1
AVLACLPRNUINSUCHIHAH
EPSS
0.19%
9.4th percentile
In Veritas NetBackup, an attacker with unprivileged local access to a NetBackup Client may send specific commands to escalate their privileges. This affects 8.0 through 8.1.2, 8.2, 8.3 through 8.3.0.2, 9.x through 9.0.0.1, and 9.1.x through 9.1.0.1.

Affected

5 ranges
VendorProductVersion rangeFixed in
veritasnetbackup
veritasnetbackup
veritasnetbackup
veritasnetbackup8.0 – 8.1.2
veritasnetbackup8.3.0.0 – 8.3.0.2
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.