First published: Thu May 01 2025(Updated: )
An insecure file system permissions vulnerability in MSP360 Backup 4.3.1.115 allows a low privileged user to execute commands with root privileges in the 'Online Backup' folder. Upgrade to MSP360 Backup 4.4 (released on 2025-04-22).
Credit: 9119a7d8-5eab-497f-8521-727c672e3725
Affected Software | Affected Version | How to fix |
---|---|---|
MSP360 Backup | =4.3.1.115 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-43595 is classified as a high-severity vulnerability due to its potential to allow lower privileged users to execute commands with root-level privileges.
To fix CVE-2025-43595, users should upgrade to MSP360 Backup version 4.4 or later.
MSP360 Backup versions prior to 4.4 are affected by CVE-2025-43595.
CVE-2025-43595 is an insecure file system permissions vulnerability.
If you are using an affected version of MSP360 Backup, it is recommended to upgrade to version 4.4 immediately.