Site icon TheCyberThrone

Veritas NetBackup Critical Vulnerability – CVE-2024-28222

Advertisements

A critical vulnerability has been uncovered in Veritas NetBackup, the widely used enterprise backup solution. This flaw could allow unauthenticated hackers to remotely execute malicious code on NetBackup servers and clients.

The vulnerability is tracked as CVE-2024-28222 with a CVSS score of 9.8, discovered in the NetBackup BPCD process, reveals an inadequate validation of file paths, allowing an unauthenticated attacker to upload and execute a custom file.

Advertisements

If your organization relies on NetBackup for data protection and you are running a version before 8.1.2 (NetBackup) or 3.1.2 (NetBackup Appliance), your systems are at risk. Attackers could potentially:

The best defense is immediate action:

NetBackup often safeguards an organization’s most asset – its data. A breach could have devastating consequences, from financial loss to reputational damage. Don’t underestimate the seriousness of this vulnerability or the ruthlessness of those who seek to exploit it.

Exit mobile version