A path traversal vulnerability in Commvault Command Center Innovation Release allows an unauthenticated actor to upload ZIP files, which, when expanded by the target server, result in Remote Code Execution.
This issue affects Command Center Innovation Release: 11.38.
Metrics
Affected Vendors & Products
References
History
Tue, 22 Apr 2025 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 22 Apr 2025 16:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A path traversal vulnerability in Commvault Command Center Innovation Release allows an unauthenticated actor to upload ZIP files, which, when expanded by the target server, result in Remote Code Execution. This issue affects Command Center Innovation Release: 11.38. | |
Title | Commvault Command Center Innovation Release Unathenticated Path Traversal | |
Weaknesses | CWE-22 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: VulnCheck
Published: 2025-04-22T16:32:23.446Z
Updated: 2025-04-25T03:55:31.257Z
Reserved: 2025-04-15T19:15:22.545Z
Link: CVE-2025-34028

Updated: 2025-04-22T17:29:12.281Z

Status : Awaiting Analysis
Published: 2025-04-22T17:16:48.027
Modified: 2025-04-23T14:08:13.383
Link: CVE-2025-34028

No data.