Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wqxv-v2vg-q37x

Опубликовано: 25 апр. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 8.7
CVSS3: 8.8

Описание

Commvault Web Server has an unspecified vulnerability that can be exploited by a remote, authenticated attacker. According to the Commvault advisory: "Webservers can be compromised through bad actors creating and executing webshells." Fixed in version 11.36.46, 11.32.89, 11.28.141, and 11.20.217 for Windows and Linux platforms.

Commvault Web Server has an unspecified vulnerability that can be exploited by a remote, authenticated attacker. According to the Commvault advisory: "Webservers can be compromised through bad actors creating and executing webshells." Fixed in version 11.36.46, 11.32.89, 11.28.141, and 11.20.217 for Windows and Linux platforms.

EPSS

Процентиль: 81%
0.0214
Низкий

8.7 High

CVSS4

8.8 High

CVSS3

Связанные уязвимости

CVSS3: 8.8
nvd
больше 1 года назад

Commvault Web Server has an unspecified vulnerability that can be exploited by a remote, authenticated attacker. According to the Commvault advisory: "Webservers can be compromised through bad actors creating and executing webshells." Fixed in version 11.36.46, 11.32.89, 11.28.141, and 11.20.217 for Windows and Linux platforms. This vulnerability was added to the CISA Known Exploited Vulnerabilities (KEV) Catalog on 2025-04-28.

CVSS3: 8.8
fstec
больше 1 года назад

Уязвимость веб-сервера системы резервного копирования и восстановления данных CommVault, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 81%
0.0214
Низкий

8.7 High

CVSS4

8.8 High

CVSS3