CVE-2022-42307EPSS p47.4%
CVE-2022-42307CVE-2022-42307
veritas / netbackup
Description
An issue was discovered in Veritas NetBackup through 10.0.0.1 and related Veritas products. The NetBackup Primary server is vulnerable to an XML External Entity (XXE) Injection attack through the DiscoveryService service.
Scoring
| CVSS | 5.3 () |
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N |
| EPSS | 0.61% probability of exploitation · percentile 47.4% · 2026-10-05T12:00:23Z |
| Last modified | 2026-06-17 |