CVE-2022-45461: Veritas Netbackup

High severity, CVSS 8.8. EPSS: 0.8% chance of exploitation in the next 30 days.

The Java Admin Console in Veritas NetBackup through 10.1 and related Veritas products on Linux and UNIX allows authenticated non-root users (that have been explicitly added to the auth.conf file) to execute arbitrary commands as root.

Affected products

  • Veritas Netbackup: up to and including 10.1

Published 2022-11-17. Last modified 2026-06-17.