Showing 2 vulnerabilities on this page for arcserve_unified_data_protection

Signals CISA KEV Ransomware Nuclei
Arcserve vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

Authentication Bypass via wizardLogin in Arcserve Unified Data Protection

A path traversal vulnerability exists in Arcserve Unified Data Protection 9.2 and 8.1 in edge-app-base-webui.jar!com.ca.arcserve.edge.app.base.ui.server.servlet.ImportNodeServlet.

CWE-434Mar 13, 2024
CVSS8.8v3.1EPSS1.03%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Authentication Bypass via wizardLogin in Arcserve Unified Data Protection

An authentication bypass vulnerability exists in Arcserve Unified Data Protection 9.2 and 8.1 in the edge-app-base-webui.jar!com.ca.arcserve.edge.app.base.ui.server.EdgeLoginServiceImpl.doLogin() function within wizardLogin.

CWE-287Mar 13, 20241 related artifact
CVSS9.8v3.1EPSS4.34%PoCs0SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei templateSTIX