In Code42 Enterprise and Crashplan for Small Business through Client version 6.9.1, an attacker can craft a restore request to restore a file through the Code42 app to a location they do not have privileges to write.
References
Link | Resource |
---|---|
https://code42.com/r/support/CVE-2019-11551 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2019-08-21 11:15
Updated : 2020-08-24 10:37
NVD link : CVE-2019-11551
Mitre link : CVE-2019-11551
JSON object : View
CWE
CWE-269
Improper Privilege Management
Products Affected
code42
- code42_for_enterprise
- crashplan_for_small_business