Commvault Cloud是美国Commvault公司的一款云数据管理与存储解决方案。 Commvault Cloud 11.46.19及之前的11.46.x版本、11.44.19及之前的11.44.x版本、11.40.71及之前的11.40.x版本和11.36.122及之前的11.36.x版本存在缓冲区错误漏洞,该漏洞源于CommServe组件存在栈缓冲区溢出,影响服务可用性。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Commvault | Commvault Cloud | 11.46.0≤ 11.46.19 |
affected |
11.44.0≤ 11.44.19 |
affected | ||
11.40.0≤ 11.40.71 |
affected | ||
11.36.0≤ 11.36.122 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Commvault | Commvault Cloud | 11.46.0 ~ 11.46.19 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-77089 | 9.3 CRITICAL | Command Center API Authentication Bypass |
| CVE-2026-77098 | 8.8 HIGH | Private Metrics Server SQL Injection |
| CVE-2026-77097 | 8.8 HIGH | Private Metrics Server Denial of Service |
| CVE-2026-77105 | 8.7 HIGH | CommServe Privilege Escalation |
| CVE-2026-77102 | 8.7 HIGH | CommServe Denial of Service |
| CVE-2026-77103 | 8.7 HIGH | CommServe Information Disclosure |
| CVE-2026-77091 | 8.5 HIGH | DataCube Security Feature Bypass |
| CVE-2026-77104 | 8.3 HIGH | CommServe Path Traversal |
| CVE-2026-77106 | 7.7 HIGH | Cvlaunchd Code Execution |
| CVE-2026-77092 | 7.3 HIGH | Content Extractor Privilege Escalation |
No comments yet