CVE-2018-11151: OS Command Injection
Published Jun 1, 2018
·Updated
Quest DR Series Disk Backup software version before 4.0.3.1 allows command injection (issue 9 of 46).
Affected Software
1 affected component
Quest Disk Backup<4.0.3.1
Event History
Jun 1, 2018
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is CVE-2018-11151?
CVE-2018-11151 is a vulnerability in the Quest DR Series Disk Backup software version before 4.0.3.1 that allows command injection.
2
How severe is CVE-2018-11151?
CVE-2018-11151 has a severity rating of 7.2 (high).
3
What software versions are affected by CVE-2018-11151?
Quest DR Series Disk Backup software versions before 4.0.3.1 are affected by CVE-2018-11151.
4
What is the Common Weakness Enumeration (CWE) of CVE-2018-11151?
CVE-2018-11151 is associated with CWE-77 and CWE-78.
5
How can I fix CVE-2018-11151?
To fix CVE-2018-11151, you need to update to Quest DR Series Disk Backup software version 4.0.3.1 or later.