This issue affects NetBackup Administration Console web interface: versions before 11.2.
https://github.com/cohesity/SecAdvisory/blob/master/COH-2026-0002.md
Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Upgrade to version 11.2 or later.
Tracking
Sign in to view the affected projects.
No advisories yet.
Sun, 11 Oct 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper neutralization of Script-Related HTML tags in a web page (basic XSS) vulnerability in Cohesity NetBackup Administration Console web interface. This issue affects NetBackup Administration Console web interface: versions before 11.2. https://github.com/cohesity/SecAdvisory/blob/master/COH-2026-0002.md | |
| Title | Cohesity - CWE-80: Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) | |
| Weaknesses | CWE-80 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: INCD
Published:
Updated: 2026-10-11T18:11:27.584Z
Reserved: 2026-10-11T17:57:47.923Z
Link: CVE-2026-108925
No data.
Status : Received
Published: 2026-10-11T19:16:33.957
Modified: 2026-10-11T19:16:33.957
Link: CVE-2026-108925
No data.
OpenCVE Enrichment
Updated: 2026-10-11T19:30:13Z
-
CWE-80
Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS)