Description
A security vulnerability has been identified that allows remote attackers to perform unauthorized file system access through a path traversal issue. The vulnerability may lead to remote code execution.
Problem types
CWE-36: Absolute Path Traversal
Product status
11.32.0
11.36.0
Credits
Sonny and Piotr Bazydlo (@chudyPB) of watchTowr
References
documentation.commvault.com/...yadvisories/CV_2025_08_2.html