CVE-2022-42307EPSS p43.0%
CVE-2022-42307CVE-2022-42307
veritas / netbackup
Description
An issue was discovered in Veritas NetBackup through 10.0.0.1 and related Veritas products. The NetBackup Primary server is vulnerable to an XML External Entity (XXE) Injection attack through the DiscoveryService service.
Scoring
| CVSS | 5.3 () |
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N |
| EPSS | 0.55% probability of exploitation · percentile 43.0% · 2026-08-03T12:00:16Z |
| Last modified | 2026-06-17 |