An insecure file system permissions vulnerability in MSP360 Backup 4.3.1.115 allows a low privileged user to execute commands with root privileges in the 'Online Backup' folder. Upgrade to MSP360 Backup 4.4 (released on 2025-04-22).
Metrics
Affected Vendors & Products
References
History
Fri, 02 May 2025 03:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An insecure file system permissions vulnerability in MSP360 Backup 4.3.1.115 allows a lower privileged user to execute commands with root level privileges in the 'Online Backup' folder. Users are recommended to upgrade to MSP360 Backup 4.4 (released on 2025-04-22). | An insecure file system permissions vulnerability in MSP360 Backup 4.3.1.115 allows a low privileged user to execute commands with root privileges in the 'Online Backup' folder. Upgrade to MSP360 Backup 4.4 (released on 2025-04-22). |
Title | Insecure file system permissions in MSP360 Backup for Linux | MSP360 Backup for Linux insecure filesystem permissions |
Thu, 01 May 2025 21:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An insecure file system permissions vulnerability in MSP360 Backup 4.3.1.115 allows a lower privileged user to execute commands with root level privileges in the 'Online Backup' folder. Users are recommended to upgrade to MSP360 Backup 4.4 (released on 2025-04-22). | |
Title | Insecure file system permissions in MSP360 Backup for Linux | |
Weaknesses | CWE-276 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: cisa-cg
Published: 2025-05-01T21:12:58.729Z
Updated: 2025-05-02T02:38:28.389Z
Reserved: 2025-04-16T17:27:51.989Z
Link: CVE-2025-43595

No data.

Status : Awaiting Analysis
Published: 2025-05-01T22:15:17.800
Modified: 2025-05-02T13:52:51.693
Link: CVE-2025-43595

No data.