CVE-2024-13975: Commvault 11.20.0 - 11.36.0 Windows Access Nodes Compromise via Local File Server Agent Abuse
A local privilege escalation vulnerability exists in Commvault for Windows versions 11.20.0, 11.28.0, 11.32.0, 11.34.0, and 11.36.0. In affected configurations, a local attacker who owns a client system with the file server agent installed can compromise any assigned Windows access nodes. This may allow unauthorized access or lateral movement within the backup infrastructure. The issue has been resolved in versions 11.32.60, 11.34.34, and 11.36.8.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-13975?
CVE-2024-13975 is classified as a local privilege escalation vulnerability which can significantly impact system security.
How do I fix CVE-2024-13975?
To fix CVE-2024-13975, upgrade Commvault for Windows to a version higher than 11.36.0.
Who is affected by CVE-2024-13975?
CVE-2024-13975 affects users running Commvault for Windows versions 11.20.0 through 11.36.0.
What types of systems are vulnerable to CVE-2024-13975?
CVE-2024-13975 affects systems where the file server agent of Commvault is installed.
Can CVE-2024-13975 be exploited remotely?
No, CVE-2024-13975 can only be exploited locally by an attacker with access to a client system.