CVE-2021-27876: Veritas Backup Exec Agent
EPSS13.5%No. 1223 of 1739 in KEV
CVE year2021~2 yrs before listing
Same vendor in KEV3
Same product3
| Field | Value |
|---|---|
| Vendor | Veritas |
| Product | Backup Exec Agent |
| Name | Veritas Backup Exec Agent File Access Vulnerability |
| Added to KEV | 2023-04-07 |
| US federal due date | 2023-04-28 |
| Ransomware use | Known |
| CWE | CWE-287 |
CISA description
Veritas Backup Exec (BE) Agent contains a file access vulnerability that could allow an attacker to specially craft input parameters on a data management protocol command to access files on the BE Agent machine.
Other entries for this product
| CVE | Vendor / product | Added | EPSS | Ransomware |
|---|---|---|---|---|
| CVE-2021-27878 | Veritas Backup Exec Agent | 2023-04-07 | 23.9% | Known |
| CVE-2021-27877 | Veritas Backup Exec Agent | 2023-04-07 | 64.9% | Known |
Data from CISA's Known Exploited Vulnerabilities (KEV) catalog. EPSS is FIRST's estimated probability of exploitation activity in the next 30 days, refreshed weekly. Always follow the vendor's official guidance.
About this page
A Veritas Backup Exec Agent vulnerability added to CISA's Known Exploited Vulnerabilities catalog on 2023-04-07.