CVE-2021-27878
Veritas Backup Exec Agent Command Execution Vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
YesDecision
Descriptions
An issue was discovered in Veritas Backup Exec before 21.2. The communication between a client and an Agent requires successful authentication, which is typically completed over a secure TLS communication. However, due to a vulnerability in the SHA Authentication scheme, an attacker is able to gain unauthorized access and complete the authentication process. Subsequently, the client can execute data management protocol commands on the authenticated connection. The attacker could use one of these commands to execute an arbitrary command on the system using system privileges.
Se detectó un problema en Veritas Backup Exec versiones anteriores a 21.2. La comunicación entre un cliente y un agente requiere una autenticación con éxito, que generalmente se completa por medio de una comunicación TLS segura. Sin embargo, debido a una vulnerabilidad en el esquema de autenticación SHA, un atacante puede conseguir acceso no autorizado y completar el proceso de autenticación. Posteriormente, el cliente puede ejecutar comandos de protocolo de gestión de datos en la conexión autenticada. El atacante podría usar uno de estos comandos para ejecutar un comando arbitrario en el sistema usando privilegios system
Veritas Backup Exec (BE) Agent contains a command execution vulnerability that could allow an attacker to use a data management protocol command to execute a command on the BE Agent machine.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2021-03-01 CVE Reserved
- 2021-03-01 CVE Published
- 2023-04-07 Exploited in Wild
- 2023-04-28 KEV Due Date
- 2024-07-04 EPSS Updated
- 2024-08-03 CVE Updated
- 2024-08-03 First Exploit
CWE
- CWE-287: Improper Authentication
CAPEC
References (3)
URL | Date | SRC |
---|---|---|
http://packetstormsecurity.com/files/168506/Veritas-Backup-Exec-Agent-Remote-Code-Execution.html | 2024-08-03 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://www.veritas.com/content/support/en_US/security/VTS21-001#issue3 | 2022-09-27 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Veritas Search vendor "Veritas" | Backup Exec Search vendor "Veritas" for product "Backup Exec" | < 21.2 Search vendor "Veritas" for product "Backup Exec" and version " < 21.2" | - |
Affected
|