CVE-2018-11160: OS Command Injection
Published Jun 1, 2018
·Updated
Quest DR Series Disk Backup software version before 4.0.3.1 allows command injection (issue 18 of 46).
Affected Software
1 affected component
Quest Disk Backup<4.0.3.1
Event History
Jun 1, 2018
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2018-11160.
2
What is the affected software for this vulnerability?
The affected software for this vulnerability is Quest DR Series Disk Backup software version before 4.0.3.1.
3
What is the severity of CVE-2018-11160?
The severity of CVE-2018-11160 is high with a severity value of 8.8.
4
What is the CWE number associated with CVE-2018-11160?
The CWE numbers associated with CVE-2018-11160 are 77 and 78.
5
How can I fix the vulnerability CVE-2018-11160?
To fix the vulnerability CVE-2018-11160, update the Quest DR Series Disk Backup software to version 4.0.3.1 or newer.