Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2748▲ 38 respecto a la semana anterior
Críticas / altas1479▲ 369 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)64▼ 462 respecto a la semana anterior
23 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Crítica (9.8) | 1.3% | — | Veritas Access ApplianceVeritas Netbackup Flex Scale Appliance | 4/12/2022 | 17/6/2026 | An issue was discovered in Veritas NetBackup Flex Scale through 3.0 and Access Appliance through 8.0.100. Unauthenticated remote command execution can occur via the management portal. | |
| Modificada | Alta (8.8) | 1.5% | — | Veritas Access ApplianceVeritas Netbackup Flex Scale Appliance | 4/12/2022 | 17/6/2026 | An issue was discovered in Veritas NetBackup Flex Scale through 3.0 and Access Appliance through 8.0.100. Authenticated remote command execution can occur via the management portal. | |
| Modificada | Alta (8.8) | 0.70% | — | Veritas Netbackup Flex Scale Appliance | 4/12/2022 | 17/6/2026 | An issue was discovered in Veritas NetBackup Flex Scale through 3.0. A non-privileged user may escape a restricted shell and execute privileged commands. | |
| Modificada | Alta (8.8) | 0.58% | — | Veritas Access ApplianceVeritas Netbackup Flex Scale Appliance | 4/12/2022 | 17/6/2026 | An issue was discovered in Veritas NetBackup Flex Scale through 3.0 and Access Appliance through 8.0.100. A default password is persisted after installation and may be discovered and used to escalate privileges. | |
| Modificada | Alta (8.8) | 0.58% | — | Veritas Netbackup Flex Scale Appliance | 4/12/2022 | 17/6/2026 | An issue was discovered in Veritas NetBackup Flex Scale through 3.0. An attacker with non-root privileges may escalate privileges to root by using specific commands. | |
| Modificada | Media (6.5) | 0.69% | — | Veritas Flex ApplianceVeritas Flex ScaleVeritas NetbackupVeritas Netbackup Appliance | 28/7/2022 | 17/6/2026 | An issue was discovered in Veritas NetBackup 8.1.x through 8.1.2, 8.2, 8.3.x through 8.3.0.2, 9.x through 9.0.0.1, and 9.1.x through 9.1.0.1 (and related NetBackup products). Under certain conditions, an attacker with authenticated access to a NetBackup Client could remotely read files on a NetBackup Primary server. | |
| Modificada | Media (6.5) | 0.69% | — | Veritas Flex ApplianceVeritas Flex ScaleVeritas NetbackupVeritas Netbackup Appliance | 28/7/2022 | 17/6/2026 | An issue was discovered in Veritas NetBackup 8.1.x through 8.1.2, 8.2, 8.3.x through 8.3.0.2, 9.x through 9.0.0.1, and 9.1.x through 9.1.0.1 (and related NetBackup products). Under certain conditions, an attacker with authenticated access to a NetBackup Client could remotely read files on a NetBackup Primary server. | |
| Modificada | Media (6.5) | 0.66% | — | Veritas Flex ApplianceVeritas Flex ScaleVeritas NetbackupVeritas Netbackup Appliance | 28/7/2022 | 17/6/2026 | An issue was discovered in Veritas NetBackup 8.1.x through 8.1.2, 8.2, 8.3.x through 8.3.0.2, 9.x through 9.0.0.1, and 9.1.x through 9.1.0.1 (and related NetBackup products). An attacker with authenticated access to a NetBackup Client could remotely trigger a stack-based buffer overflow on the NetBackup Primary… | |
| Modificada | Alta (8.8) | 0.70% | — | Veritas Flex ApplianceVeritas Flex ScaleVeritas NetbackupVeritas Netbackup Appliance | 28/7/2022 | 17/6/2026 | An issue was discovered in Veritas NetBackup 8.1.x through 8.1.2, 8.2, 8.3.x through 8.3.0.2, 9.x through 9.0.0.1, and 9.1.x through 9.1.0.1 (and related NetBackup products). An attacker with authenticated access to a NetBackup Client could remotely trigger impacts that include arbitrary file read, Server-Side Request… | |
| Modificada | Media (6.5) | 0.60% | — | Veritas Flex ApplianceVeritas Flex ScaleVeritas NetbackupVeritas Netbackup Appliance | 28/7/2022 | 17/6/2026 | An issue was discovered in Veritas NetBackup 8.1.x through 8.1.2, 8.2, 8.3.x through 8.3.0.2, 9.x through 9.0.0.1, and 9.1.x through 9.1.0.1 (and related NetBackup products). An attacker with access to a NetBackup Client could remotely gather information about any host known to a NetBackup Primary server. | |
| Modificada | Media (4.3) | 0.51% | — | Veritas Flex ApplianceVeritas Flex ScaleVeritas NetbackupVeritas Netbackup Appliance | 28/7/2022 | 17/6/2026 | An issue was discovered in Veritas NetBackup 8.1.x through 8.1.2, 8.2, 8.3.x through 8.3.0.2, 9.x through 9.0.0.1, and 9.1.x through 9.1.0.1 (and related NetBackup products). An attacker with authenticated access to a NetBackup Client could arbitrarily create directories on a NetBackup Primary server. | |
| Modificada | Media (6.5) | 0.61% | — | Veritas Flex ApplianceVeritas Flex ScaleVeritas NetbackupVeritas Netbackup Appliance | 28/7/2022 | 17/6/2026 | An issue was discovered in Veritas NetBackup 8.1.x through 8.1.2, 8.2, 8.3.x through 8.3.0.2, 9.x through 9.0.0.1, and 9.1.x through 9.1.0.1 (and related NetBackup products). An attacker with authenticated access to a NetBackup Client could arbitrarily read files from a NetBackup Primary server. | |
| Modificada | Alta (8.8) | 1.0% | — | Veritas Flex ApplianceVeritas Flex ScaleVeritas NetbackupVeritas Netbackup Appliance | 28/7/2022 | 17/6/2026 | An issue was discovered in Veritas NetBackup 8.1.x through 8.1.2, 8.2, 8.3.x through 8.3.0.2, 9.x through 9.0.0.1, and 9.1.x through 9.1.0.1 (and related NetBackup products). An attacker with authenticated access to a NetBackup Client could remotely execute arbitrary commands on a NetBackup Primary server. | |
| Modificada | Alta (8.8) | 1.0% | — | Veritas Flex ApplianceVeritas Flex ScaleVeritas NetbackupVeritas Netbackup Appliance | 28/7/2022 | 17/6/2026 | An issue was discovered in Veritas NetBackup 8.1.x through 8.1.2, 8.2, 8.3.x through 8.3.0.2, 9.x through 9.0.0.1, and 9.1.x through 9.1.0.1 (and related NetBackup products). An attacker with authenticated access to a NetBackup Client could remotely execute arbitrary commands on a NetBackup Primary server (in specific… | |
| Modificada | Media (6.5) | 0.66% | — | Veritas Flex ApplianceVeritas Flex ScaleVeritas NetbackupVeritas Netbackup Appliance | 28/7/2022 | 17/6/2026 | An issue was discovered in Veritas NetBackup 8.1.x through 8.1.2, 8.2, 8.3.x through 8.3.0.2, 9.x through 9.0.0.1, and 9.1.x through 9.1.0.1 (and related NetBackup products). An attacker with authenticated access to a NetBackup Client could arbitrarily write content to a partially controlled path on a NetBackup… | |
| Modificada | Media (6.5) | 0.66% | — | Veritas Flex ApplianceVeritas Flex ScaleVeritas NetbackupVeritas Netbackup Appliance | 28/7/2022 | 17/6/2026 | An issue was discovered in Veritas NetBackup 8.1.x through 8.1.2, 8.2, 8.3.x through 8.3.0.2, 9.x through 9.0.0.1, and 9.1.x through 9.1.0.1 (and related NetBackup products). An attacker with authenticated access to a NetBackup Client could remotely write arbitrary files to arbitrary locations from any Client to any… | |
| Modificada | Alta (8.8) | 1.0% | — | Veritas Flex ApplianceVeritas Flex ScaleVeritas NetbackupVeritas Netbackup Appliance | 28/7/2022 | 17/6/2026 | An issue was discovered in Veritas NetBackup 8.1.x through 8.1.2, 8.2, 8.3.x through 8.3.0.2, 9.x through 9.0.0.1, and 9.1.x through 9.1.0.1 (and related NetBackup products). An attacker with authenticated access to a NetBackup Client could remotely execute arbitrary commands on a NetBackup Primary server. | |
| Modificada | Alta (8.8) | 0.89% | — | Veritas Flex ApplianceVeritas Flex ScaleVeritas NetbackupVeritas Netbackup Appliance | 28/7/2022 | 17/6/2026 | An issue was discovered in Veritas NetBackup 8.1.x through 8.1.2, 8.2, 8.3.x through 8.3.0.2, 9.x through 9.0.0.1, and 9.1.x through 9.1.0.1 (and related NetBackup products). An attacker with authenticated access to a NetBackup OpsCenter server, NetBackup Primary server, or NetBackup Media server could remotely… | |
| Modificada | Media (6.5) | 0.63% | — | Veritas Flex ApplianceVeritas Flex ScaleVeritas NetbackupVeritas Netbackup Appliance | 28/7/2022 | 17/6/2026 | An issue was discovered in Veritas NetBackup 8.1.x through 8.1.2, 8.2, 8.3.x through 8.3.0.2, 9.x through 9.0.0.1, and 9.1.x through 9.1.0.1 (and related NetBackup products). An attacker with authenticated access to a NetBackup Client could arbitrarily write files to a NetBackup Primary server. | |
| Modificada | Crítica (9.8) | 0.95% | — | Veritas Flex ApplianceVeritas Flex ScaleVeritas NetbackupVeritas Netbackup Appliance | 28/7/2022 | 17/6/2026 | An issue was discovered in Veritas NetBackup 8.1.x through 8.1.2, 8.2, 8.3.x through 8.3.0.2, 9.x through 9.0.0.1, and 9.1.x through 9.1.0.1 (and related NetBackup products). An attacker with unauthenticated access could remotely execute arbitrary commands on a NetBackup Primary server. | |
| Modificada | Alta (7.8) | 0.20% | — | Veritas Flex ApplianceVeritas Flex ScaleVeritas NetbackupVeritas Netbackup Appliance | 28/7/2022 | 17/6/2026 | An issue was discovered in Veritas NetBackup 8.1.x through 8.1.2, 8.2, 8.3.x through 8.3.0.2, 9.x through 9.0.0.1, and 9.1.x through 9.1.0.1 (and related NetBackup products). An attacker with unprivileged local access to a Windows NetBackup Primary server could potentially escalate their privileges. | |
| Modificada | Media (6.5) | 0.74% | — | Veritas Flex ApplianceVeritas Flex ScaleVeritas NetbackupVeritas Netbackup Appliance | 28/7/2022 | 17/6/2026 | An issue was discovered in Veritas NetBackup 8.1.x through 8.1.2, 8.2, 8.3.x through 8.3.0.2, 9.x through 9.0.0.1, and 9.1.x through 9.1.0.1 (and related NetBackup products). An attacker with authenticated access to a NetBackup Client could remotely trigger a denial of service attack against a NetBackup Primary server. | |
| Analizada | Crítica (9.8) | 100% | ⚠ Explotación activa | Vmware Spring FrameworkCisco CX Cloud AgentOracle Communications Cloud Native Core Automated Test SuiteOracle Communications Cloud Native Core Console+34 | 1/4/2022 | 17/6/2026 | A Spring MVC or Spring WebFlux application running on JDK 9+ may be vulnerable to remote code execution (RCE) via data binding. The specific exploit requires the application to run on Tomcat as a WAR deployment. If the application is deployed as a Spring Boot executable jar, i.e. the default, it is not vulnerable to… |