CVE-2021-43039: Medium severity unitrends backup vulnerability
Published Dec 6, 2021
·Updated
An issue was discovered in Kaseya Unitrends Backup Appliance before 10.5.5. The Samba file sharing service allowed anonymous read/write access.
Affected Software
1 affected component
Kaseya Unitrends Backup>=10.0<10.5.5
Event History
Dec 6, 2021
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:15 AM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2021-43039?
CVE-2021-43039 has a high severity rating due to unauthorized access to sensitive files.
2
How do I fix CVE-2021-43039?
To fix CVE-2021-43039, upgrade the Kaseya Unitrends Backup Appliance to version 10.5.5 or later.
3
What are the risks associated with CVE-2021-43039?
The risks of CVE-2021-43039 include potential data breaches, loss of data confidentiality, and unauthorized modifications.
4
Is CVE-2021-43039 present in all versions of Kaseya Unitrends Backup?
CVE-2021-43039 affects Kaseya Unitrends Backup versions from 10.0 to 10.5.4.
5
What is the impact of exposing Samba file sharing in CVE-2021-43039?
Exposing Samba file sharing in CVE-2021-43039 allows attackers to access files without authentication, posing a significant security threat.