CVE-2018-11170: OS Command Injection
Published Jun 1, 2018
·Updated
Quest DR Series Disk Backup software version before 4.0.3.1 allows command injection (issue 28 of 46).
Affected Software
1 affected component
Quest Disk Backup<4.0.3.1
Event History
Jun 1, 2018
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for Quest DR Series Disk Backup software?
The vulnerability ID for Quest DR Series Disk Backup software is CVE-2018-11170.
2
What is the severity of CVE-2018-11170?
The severity of CVE-2018-11170 is high with a severity value of 8.8.
3
How does CVE-2018-11170 affect Quest DR Series Disk Backup software?
CVE-2018-11170 allows command injection in Quest DR Series Disk Backup software versions before 4.0.3.1.
4
How can I fix CVE-2018-11170?
To fix CVE-2018-11170, update Quest DR Series Disk Backup software to version 4.0.3.1 or later.
5
What are some references for CVE-2018-11170?
Some references for CVE-2018-11170 include: [1] [2] [3]