RSS   Vulnerabilities for 'Crashplan'   RSS

2017-06-27
 
CVE-2017-9830

 

 
Remote Code Execution is possible in Code42 CrashPlan 5.4.x via the org.apache.commons.ssl.rmi.DateRMI Java class, because (upon instantiation) it creates an RMI server that listens on a TCP port and deserializes objects sent by TCP clients.

 

 >>> Vendor: Code42 4 Products
Crashplan
Code42
Code42 for enterprise
Crashplan for small business


Copyright 2024, cxsecurity.com

 

Back to Top