CVE-2023-28759: Veritas Netbackup

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

An issue was discovered in Veritas NetBackup before 10.0 on Windows. A vulnerability in the way the client validates the path to a DLL prior to loading may allow a lower-level user to elevate privileges and compromise the system.

Affected products

  • Veritas Netbackup: before 10.0 (fixed in 10.0)

Published 2023-03-23. Last modified 2026-06-17.