Skip to content
Noroxi

unitrends records

10 published records for vendor unitrends.

All records

10 records
  • It was discovered that the Unitrends Backup (UB) before 10.1.0 libbpext.so authentication could be bypassed with a SQL injection, allowing a

    CriticalCVSS 9.8WeaponizedEPSS 61%

    unitrends · backupMar 14, 2018

  • Unitrends Enterprise Backup 7.3.0 allows remote authenticated users to execute arbitrary commands via shell metacharacters in the comm param

    CriticalCVSS 10.0Proof of conceptEPSS 7%

    unitrends · enterprise backupApr 28, 2014

  • An issue was discovered in api/includes/systems.php in Unitrends Enterprise Backup before 9.0.0.

    CriticalCVSS 9.8No exploitEPSS 6%

    unitrends · enterprise backupApr 12, 2017

  • An unprivileged user of the Unitrends Enterprise Backup before 9.0.0 web server can escalate to root privileges by modifying the "token" coo

    CriticalCVSS 9.8No exploitEPSS 4%

    unitrends · enterprise backupApr 12, 2017

  • CVE-2020-8427
    39Monitor

    In Unitrends Backup before 10.4.1, an HTTP request parameter was not properly sanitized, allowing for SQL injection that resulted in an auth

    CriticalCVSS 9.8No exploitEPSS 2%

    unitrends · backupFeb 17, 2020

  • CVE-2017-7281
    36Monitor

    An issue was discovered in Unitrends Enterprise Backup before 9.1.2.

    HighCVSS 8.8No exploitEPSS 4%

    unitrends · enterprise backupApr 12, 2017

  • CVE-2017-7283
    36Monitor

    An authenticated user of Unitrends Enterprise Backup before 9.1.2 can execute arbitrary OS commands by sending a specially crafted filename

    HighCVSS 8.8No exploitEPSS 4%

    unitrends · enterprise backupApr 19, 2017

  • CVE-2017-7284
    36Monitor

    An attacker that has hijacked a Unitrends Enterprise Backup (before 9.1.2) web server session can leverage api/includes/users.php to change

    HighCVSS 8.8No exploitEPSS 3%

    unitrends · enterprise backupApr 12, 2017

  • CVE-2014-3139
    31Monitor

    recoveryconsole/bpl/snmpd.php in Unitrends Enterprise Backup 7.3.0 allows remote attackers to bypass authentication by setting the auth para

    HighCVSS 7.5Proof of conceptEPSS 3%

    unitrends · enterprise backupMay 2, 2014

  • CVE-2017-7282
    23Monitor

    An issue was discovered in Unitrends Enterprise Backup before 9.1.1.

    MediumCVSS 5.5No exploitEPSS 4%

    unitrends · enterprise backupApr 19, 2017