CVE-2025-62842: HBS 3 Hybrid Backup Sync
An external control of file name or path vulnerability has been reported to affect HBS 3 Hybrid Backup Sync. If an attacker gains local network access, they can then exploit the vulnerability to read or modify files or directories.
We have already fixed the vulnerability in the following version: HBS 3 Hybrid Backup Sync 26.2.0.938 and later
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-62842?
CVE-2025-62842 is considered a high severity vulnerability due to its ability to allow unauthorized access to files on affected systems.
How do I fix CVE-2025-62842?
To address CVE-2025-62842, ensure your HBS 3 Hybrid Backup Sync is updated to version 26.2.0.938 or later.
What systems are affected by CVE-2025-62842?
CVE-2025-62842 specifically affects HBS 3 Hybrid Backup Sync versions prior to 26.2.0.938.
Can CVE-2025-62842 be exploited remotely?
No, CVE-2025-62842 requires local network access to exploit the vulnerability.
What type of vulnerability is CVE-2025-62842?
CVE-2025-62842 is classified as an external control of file name or path vulnerability.