Home
CRITICAL: 9.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:HDefault status
unaffected
Any version before 26.4.3
affected
Any version before 26.5.0
affected
Description
Insufficient character filtering in backup agent signing module on Comet Backup server allows authenticated tenant administrator to execute an arbitrary code on behalf of a privileged user on the affected server and connected devices.
Problem types
Product status
Any version before 26.4.3
Any version before 26.5.0
References
support.cometbackup.com/...Server-via-branding-configuration