MEDIUM 4.8 NVD
CVE-2026-28199
An authenticated user with access to the NetBackup Flex OS management shell could read arbitrary files from the underlying operating system by supplying a spe
An authenticated user with access to the NetBackup Flex OS management
shell could read arbitrary files from the underlying operating system by
supplying a specially crafted path argument to a diagnostic command.
Successful exploitation could expose sensitive system configuration and
credential material stored on the appliance.
References
- https://github.com/cohesity/SecAdvisory/blob/master/COH-2026-0001.md
- https://www.cvcn.gov.it/cvcn/cve/CVE-2026-28199
This medium severity vulnerability with a CVSS score of 4.8 was published on 2026-09-18 via NVD.
vulnfeed aggregates 14509 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.