Veritas NetBackup Appliance 2.7.x / 3.0.x Remote Command Execution (VTS17-005)

critical Nessus Plugin ID 100273

Synopsis

The remote backup management appliance is affected by a remote command execution vulnerability.

Description

According to its self-reported version, the remote Veritas NetBackup Appliance is 2.7.x or 3.0.x, and may be missing a vendor-supplied security patch. It is, therefore, affected by a remote command execution vulnerability due to improper validation of user-supplied input. An unauthenticated, remote attacker can exploit this to execute arbitrary commands with root privileges.

Note that Nessus has not checked to see if an available Emergency Engineering Binary (EEB) was applied.

Solution

Apply the May 7th Emergency Engineering Binary (EEB) as referenced in the vendor advisory.

See Also

https://www.veritas.com/content/support/en_US/security/VTS17-005.html

https://www.veritas.com/support/en_US/article.000126557

Plugin Details

Severity: Critical

ID: 100273

File Name: veritas_netbackup_appliance_VTS17-005.nasl

Version: 1.7

Type: remote

Family: CGI abuses

Published: 5/18/2017

Updated: 5/29/2023

Configuration: Enable paranoid mode, Enable thorough checks

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 5.9

CVSS v2

Risk Factor: Critical

Base Score: 10

Temporal Score: 7.4

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

CVSS Score Source: CVE-2017-8859

CVSS v3

Risk Factor: Critical

Base Score: 9.8

Temporal Score: 8.5

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C

Vulnerability Information

CPE: cpe:/a:veritas:netbackup_appliance

Required KB Items: Settings/ParanoidReport, installed_sw/NetBackup Appliance

Exploit Ease: No exploit is required

Patch Publication Date: 5/7/2017

Vulnerability Publication Date: 5/7/2017

Reference Information

CVE: CVE-2017-8859

BID: 98383

IAVA: 2017-A-0152-S