CVE-2018-11167: OS Command Injection
Published Jun 1, 2018
·Updated
Quest DR Series Disk Backup software version before 4.0.3.1 allows command injection (issue 25 of 46).
Affected Software
1 affected component
Quest Disk Backup<4.0.3.1
Event History
Jun 1, 2018
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for the Quest DR Series Disk Backup software?
The vulnerability ID for the Quest DR Series Disk Backup software is CVE-2018-11167.
2
What is the severity of CVE-2018-11167?
The severity of CVE-2018-11167 is high, with a severity value of 8.8.
3
What is the affected version of the Quest DR Series Disk Backup software?
The affected version of the Quest DR Series Disk Backup software is versions before 4.0.3.1.
4
What is the vulnerability type of CVE-2018-11167?
The vulnerability type of CVE-2018-11167 is command injection.
5
How can I fix the vulnerability CVE-2018-11167 in the Quest DR Series Disk Backup software?
To fix the vulnerability CVE-2018-11167, it is recommended to update the Quest DR Series Disk Backup software to version 4.0.3.1 or later.