CVE-2021-43041: High severity unitrends backup vulnerability
Published Dec 6, 2021
·Updated
An issue was discovered in Kaseya Unitrends Backup Appliance before 10.5.5. A crafted HTTP request could induce a format string vulnerability in the privileged vaultServer application.
Affected Software
1 affected component
Kaseya Unitrends Backup>=10.0<10.5.5
Event History
Dec 6, 2021
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2021-43041?
CVE-2021-43041 is an issue discovered in Kaseya Unitrends Backup Appliance before version 10.5.5, involving a format string vulnerability in the vaultServer application.
2
How severe is CVE-2021-43041?
CVE-2021-43041 has a severity rating of 8.8 (high).
3
What software is affected by CVE-2021-43041?
CVE-2021-43041 affects Kaseya Unitrends Backup versions between 10.0 to 10.5.5.
4
How can I fix CVE-2021-43041?
To address CVE-2021-43041, update Kaseya Unitrends Backup Appliance to version 10.5.5 or later.