Metrics
Affected Vendors & Products
Fri, 02 May 2025 02:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Commvault Web Server has an unspecified vulnerability that can be exploited by a remote, authenticated attacker. According to the Commvault advisory: "Webservers can be compromised through bad actors creating and executing webshells." Fixed in version 11.36.46, 11.32.89, 11.28.141, and 11.20.217 for Windows and Linux platforms. | Commvault Web Server has an unspecified vulnerability that can be exploited by a remote, authenticated attacker. According to the Commvault advisory: "Webservers can be compromised through bad actors creating and executing webshells." Fixed in version 11.36.46, 11.32.89, 11.28.141, and 11.20.217 for Windows and Linux platforms. This vulnerability was added to the CISA Known Exploited Vulnerabilities (KEV) Catalog on 2025-04-28. |
References |
|
Tue, 29 Apr 2025 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Commvault
Commvault commvault Linux Linux linux Kernel Microsoft Microsoft windows |
|
Weaknesses | NVD-CWE-noinfo | |
CPEs | cpe:2.3:a:commvault:commvault:*:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* |
|
Vendors & Products |
Commvault
Commvault commvault Linux Linux linux Kernel Microsoft Microsoft windows |
Mon, 28 Apr 2025 23:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
kev
|
Mon, 28 Apr 2025 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
ssvc
|
Fri, 25 Apr 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Fri, 25 Apr 2025 16:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Commvault Web Server has an unspecified vulnerability that can be exploited by a remote, authenticated attacker. According to the Commvault advisory: "Webservers can be compromised through bad actors creating and executing webshells." Fixed in version 11.36.46, 11.32.89, 11.28.141, and 11.20.217 for Windows and Linux platforms. | |
Title | Commvault Web Server unspecified vulnerability | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: cisa-cg
Published: 2025-04-25T15:56:28.112Z
Updated: 2025-05-02T02:14:33.997Z
Reserved: 2025-04-24T19:55:32.578Z
Link: CVE-2025-3928

Updated: 2025-04-25T16:09:31.829Z

Status : Analyzed
Published: 2025-04-25T16:15:27.817
Modified: 2025-05-02T14:15:28.413
Link: CVE-2025-3928

No data.