First published: Wed Mar 13 2024(Updated: )
An authentication bypass vulnerability exists in Arcserve Unified Data Protection 9.2 and 8.1 in the edge-app-base-webui.jar!com.ca.arcserve.edge.app.base.ui.server.EdgeLoginServiceImpl.doLogin() function within wizardLogin.
Credit: vulnreport@tenable.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Unified Data Protection | >=8.1<=9.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-0799 has been assessed as a critical vulnerability due to its potential for authentication bypass.
To fix CVE-2024-0799, update Arcserve Unified Data Protection to the latest version that addresses this vulnerability.
CVE-2024-0799 affects Arcserve Unified Data Protection versions 8.1 to 9.2.
CVE-2024-0799 can be exploited to gain unauthorized access to the system due to its authentication bypass nature.
CVE-2024-0799 was reported in 2024, highlighting a significant security issue in the identified software.