CVE-2021-27877highunder attackransomware

CVE-2021-27877

Published · Updated

98Vexday Risk Score

Patch now. It under exploitation confirmed by CISA and has a working public exploit.

ssvc Actcvss 8.2epss 65%
from disclosure to weapon1949 days
Published on NVDMar 1
1st PoC+1949d
metasploitMar 1
CISA KEV+767d
exploitation probability
65%top 1% of all CVEs
observed exploitation
yesCISA + VulnCheck
2 public exploit(s)
Action required by CISAfederal deadline: 2023-04-28

Apply updates per vendor instructions.

In short

Veritas Backup Exec uses an outdated authentication method (SHA) that wasn't disabled, allowing attackers to remotely bypass security and run privileged commands on backup servers.

Technical detail

CVE-2021-27877 exploits a legacy SHA authentication scheme in Veritas Backup Exec versions before 21.2 that remains enabled despite being obsolete. Remote attackers can leverage this weak authentication vector to gain unauthorized access to Agents and execute arbitrary privileged commands without valid credentials.

Summary generated and translated by AI from the official description.

The full analysis of this CVE is available in Portuguese →

An issue was discovered in Veritas Backup Exec before 21.2. It supports multiple authentication schemes: SHA authentication is one of these. This authentication scheme is no longer used in current versions of the product, but hadn't yet been disabled. An attacker could remotely exploit this scheme to gain unauthorized access to an Agent and execute privileged commands.
CVSS:3.1/AC:L/AV:N/A:N/C:H/I:L/PR:N/S:U/UI:N
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.