arqbackup records
2 published records for vendor arqbackup.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-59 Improper Link Resolution Before File Access ('Link Following')1
- CWE-732 Incorrect Permission Assignment for Critical Resource1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
2 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
31Monitor | CVE-2017-16895Proof of concept | The (1) arq_updater, (2) arqcommitter, (3) standardrestorer, (4) arqglacierrestorer, and (5) arqs3glacierrestorer helper apps in Arq 5.x befarqbackup · arq · CWE-732 | High7.8 | — | 1.0% | Dec 1, 2017 |
29Monitor | CVE-2017-15357Proof of concept | The setpermissions function in the auto-updater in Arq before 5.9.7 for Mac allows local users to gain root privileges via a symlink attack arqbackup · arq · CWE-59 | High7.4 | — | 1.2% | Dec 1, 2017 |
- CVE-2017-1689531Monitor
The (1) arq_updater, (2) arqcommitter, (3) standardrestorer, (4) arqglacierrestorer, and (5) arqs3glacierrestorer helper apps in Arq 5.x bef
HighCVSS 7.8Proof of conceptEPSS 1%arqbackup · arqDec 1, 2017
- CVE-2017-1535729Monitor
The setpermissions function in the auto-updater in Arq before 5.9.7 for Mac allows local users to gain root privileges via a symlink attack
HighCVSS 7.4Proof of conceptEPSS 1%arqbackup · arqDec 1, 2017