CVE-2017-6408: Veritas Netbackup

High severity, CVSS 7.0. EPSS: 0.2% chance of exploitation in the next 30 days.

An issue was discovered in Veritas NetBackup 8.0 and earlier and NetBackup Appliance 3.0 and earlier. A local-privilege-escalation race condition in pbx_exchange can occur when a local user connects to a socket before permissions are secured.

Affected products

  • Veritas Netbackup: up to and including 8.0
  • Veritas Netbackup Appliance: up to and including 3.0

Published 2017-03-02. Last modified 2026-06-17.