Vulnerability CVE-2024-25228


Published: 2024-03-14

Description:
Vinchin Backup and Recovery 7.2 and Earlier is vulnerable to Authenticated Remote Code Execution (RCE) via the getVerifydiyResult function in ManoeuvreHandler.class.php.

 References:
https://blog.leakix.net/2024/01/vinchin-backup-rce-chain/
https://seclists.org/fulldisclosure/2024/Mar/15

Copyright 2026, cxsecurity.com

 

Back to Top