Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-25608

Опубликовано: 22 мар. 2026
Источник: nvd
CVSS3: 8.4
EPSS Низкий

Описание

Iperius Backup 6.1.0 contains a privilege escalation vulnerability that allows low-privilege users to execute arbitrary programs with elevated privileges by creating backup jobs. Attackers can configure backup jobs to execute malicious batch files or programs before or after backup operations, which run with the privileges of the Iperius Backup Service account (Local System or Administrator), enabling privilege escalation and arbitrary code execution.

EPSS

Процентиль: 4%
0.00137
Низкий

8.4 High

CVSS3

Дефекты

CWE-520

Связанные уязвимости

CVSS3: 8.4
github
4 месяца назад

Iperius Backup 6.1.0 contains a privilege escalation vulnerability that allows low-privilege users to execute arbitrary programs with elevated privileges by creating backup jobs. Attackers can configure backup jobs to execute malicious batch files or programs before or after backup operations, which run with the privileges of the Iperius Backup Service account (Local System or Administrator), enabling privilege escalation and arbitrary code execution.

EPSS

Процентиль: 4%
0.00137
Низкий

8.4 High

CVSS3

Дефекты

CWE-520