QID 378066

Date Published: 2023-03-23

QID 378066: Veritas NetBackup OpsCenter Multiple Vulnerabilities

Veritas NetBackup OpsCenter gives the user the ability to display customizable, multi-level views of backup and archive resources and customizable reports for tracking service usage and expenditures.

Affected Versions:
Veritas NetBackup OpsCenter 8.2.x and earlier
Veritas NetBackup OpsCenter 8.3.x through 8.3.0.2.
Veritas NetBackup OpsCenter 9.0.0.0
Veritas NetBackup OpsCenter 9.1.0.0

Veritas NetBackup OpsCenter 10.0.0.0

QID Detection Logic (Authenticated):
Operating Systems: Windows
The QID checks for the registry to check the vulnerable version.

Note: QID is marked potential since there is no current check for hotfixes.

An attacker can comprise the Veritas NetBackup via Multiple Attack Vectors.

  • CVSS V3 rated as Critical - 9.8 severity.
  • CVSS V2 rated as High - 7.5 severity.
  • Solution
    The vendor has issued a fix for these vulnerabilities. Please refer to the vendor advisory VTS22-009 which addresses this issue.

    Software Advisories
    Advisory ID Software Component Link
    VTS22-009 URL Logo www.veritas.com/content/support/en_US/security/VTS22-009