Top technology
Linux 13140
Google 12530
Microsoft 12379
Oracle 6737
Apple 6692
Adobe 6387
Ibm 6330
Cisco 5757
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 8.8
CVE-2021-43269
In Code42 app before 8.8.0, eval injection allows an attacker to change a device’s proxy configuration to use a malicious proxy auto-config (PAC) fil…
Code42
8.8.0+
HIGH 7.2
CVE-2020-12736
Code42 environments with on-premises server versions 7.0.4 and earlier allow for possible remote code execution. When an administrator creates a loca…
Code42
after 7.0.4
HIGH 7.3
CVE-2019-16860
Code42 app through version 7.0.2 for Windows has an Untrusted Search Path. In certain situations, a non-administrative attacker on the local machine …
Code42
after 7.0.2
HIGH 7.3
CVE-2019-16861
Code42 server through 7.0.2 for Windows has an Untrusted Search Path. In certain situations, a non-administrative attacker on the local server could …
Code42
after 7.0.2
CRITICAL 9.8
CVE-2019-15131
In Code42 Enterprise 6.7.5 and earlier, 6.8.4 through 6.8.8, and 7.0.0 a vulnerability has been identified that may allow arbitrary files to be uploa…
Code42
after 6.8.8
MEDIUM 5.5
CVE-2019-11551
In Code42 Enterprise and Crashplan for Small Business through Client version 6.9.1, an attacker can craft a restore request to restore a file through…
Code42 For Enterprise
after 6.9.1
HIGH 8.8
CVE-2019-11553
In Code42 for Enterprise through 6.8.4, an administrator without web restore permission but with the ability to manage users in an organization can i…
Code42
after 6.8.4
HIGH 7.0
CVE-2019-11552
Code42 Enterprise and Crashplan for Small Business Client version 6.7 before 6.7.5, 6.8 before 6.8.8, and 6.9 before 6.9.4 allows eval injection. A p…
Code42 For Enterprise
6.7.5 / 6.8.8+
HIGH 7.8
CVE-2018-20131
The Code42 app before 6.8.4, as used in Code42 for Enterprise, on Linux installs with overly permissive permissions on the /usr/local/crashplan/log d…
Code42
6.8.4+
CRITICAL 9.8
CVE-2017-9830EPSS 6%
Remote Code Execution is possible in Code42 CrashPlan 5.4.x via the org.apache.commons.ssl.rmi.DateRMI Java class, because (upon instantiation) it cr…
Crashplan
Mitigation only