By vendor
Quest vulnerabilities
Known CVEs affecting Quest products, prioritized by severity, with SEC.co remediation and detection guidance.
10 published vulnerabilities
- CVE-2026-7569HIGH 8.8
Quest NetVault Backup contains a Cross-Site Scripting (XSS) vulnerability in its viewclient webpage that allows attackers to bypass authentication and potentially execute malicious code with SYSTEM-level privileges. The attack requires social engineering—an attacker must trick a user into visiting a malicious page or opening a crafted file. Once triggered, the vulnerability can be chained with other flaws to achieve code execution on the backup system, representing a serious threat to data protection infrastructure.
- CVE-2026-7570HIGH 8.8
A SQL injection vulnerability in Quest NetVault Backup's NVBUDashboard component allows authenticated users to execute arbitrary code on the server. While the vulnerability nominally requires valid credentials, the authentication mechanism can be bypassed, making this effectively an unauthenticated remote code execution risk. An attacker exploiting this flaw gains the privileges of the NETWORK SERVICE account, enabling full system compromise.
- CVE-2026-9780HIGH 8.8
Quest NetVault Backup contains a cross-site scripting (XSS) vulnerability in its addclient3 webpage that allows attackers to bypass authentication and inject malicious scripts. An attacker can craft a malicious webpage or file that, when visited or opened by a NetVault administrator or user, executes arbitrary code with SYSTEM-level privileges. This is a remote vulnerability requiring user interaction but poses significant risk because it can serve as a stepping stone to full system compromise.
- CVE-2026-9781HIGH 8.8
Quest NetVault Backup contains a SQL injection flaw in its NVBURASDevice JSON-RPC message handler that allows authenticated users—or attackers who bypass authentication—to execute arbitrary code with NETWORK SERVICE privileges. While the vulnerability nominally requires valid credentials, the authentication mechanism itself can be circumvented, making this a practical remote code execution risk for organizations running affected NetVault Backup deployments.
- CVE-2026-9782HIGH 8.8
Quest NetVault Backup contains a SQL injection vulnerability in its NVBUDeviceDrive JSON-RPC message handler that allows authenticated users to execute arbitrary code on the backup server with NETWORK SERVICE privileges. While the vulnerability requires valid credentials, the authentication mechanism itself can be bypassed, effectively making this exploitable by remote attackers without prior access. This is a critical flaw for organizations relying on NetVault Backup for data protection.
- CVE-2026-9783HIGH 8.8
A SQL injection flaw in Quest NetVault Backup's NVBURemovableMedia message handler allows authenticated users to inject malicious SQL commands and execute arbitrary code on the backup server. Although the application normally requires login credentials, those authentication checks can be circumvented, making this exploitable by remote, unauthenticated attackers. Code execution runs under the NETWORK SERVICE account, providing significant control over the affected system.
- CVE-2026-9784HIGH 8.8
Quest NetVault Backup contains a SQL injection vulnerability in its NVBULibraryPort JSON-RPC message handler that allows authenticated attackers to execute arbitrary code on the system. Although the vulnerability nominally requires valid credentials, the authentication mechanism can be circumvented, making this a critical remote code execution risk for organizations running affected NetVault Backup installations. The attacker-controlled code runs with NETWORK SERVICE privileges, potentially granting broad system access.
- CVE-2026-9785HIGH 8.8
Quest NetVault Backup contains a SQL injection vulnerability in its NVBULibrarySlot JSON-RPC message handler that allows authenticated users to execute arbitrary code on the backup server. While the vulnerability technically requires valid credentials, the authentication mechanism itself can be circumvented, making this effectively unauthenticated remote code execution. An attacker exploiting this flaw gains the privileges of the NETWORK SERVICE account, which typically has broad access to system resources and backup data.
- CVE-2026-9786HIGH 8.8
Quest NetVault Backup contains a SQL injection vulnerability in its NVBUDashboard component that allows authenticated attackers to execute arbitrary code with NETWORK SERVICE privileges. Although the vulnerability technically requires valid credentials, the authentication mechanism can be bypassed, making this a practical remote code execution risk. The flaw stems from insufficient validation of user-supplied strings in JSON-RPC message processing before they're used in SQL query construction.
- CVE-2026-9787HIGH 8.8
A flaw in Quest NetVault Backup's logging daemon allows authenticated users to inject system commands through specially crafted JSON-RPC requests, leading to remote code execution with SYSTEM privileges. While the vulnerability nominally requires valid credentials, the authentication mechanism can be circumvented, making this a serious risk for organizations relying on NetVault Backup for data protection.