Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Arcserve — Vulnerabilities & Security Advisories 12

Browse all 12 CVE security advisories affecting Arcserve. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Arcserve provides data protection and disaster recovery solutions for businesses, enabling backup, replication, and high availability of critical systems. Historically, their products have faced vulnerabilities including remote code execution, cross-site scripting, and privilege escalation, often stemming from insufficient input validation and access controls. While no major public security incidents have been widely documented, the 12 recorded CVEs highlight potential risks in their software stack. Security researchers have identified flaws that could allow attackers to compromise systems or escalate privileges, underscoring the importance of regular patching for organizations relying on their platforms.

CVE ID Title CVSS Severity Published
CVE-2026-40118 Arcserve UDP Console 安全漏洞 — UDP Console CWE-941 4.3AI Medium AI 2026-04-16
CVE-2025-34520 Arcserve UDP < 10.2 Authentication Bypass — Unified Data Protection (UDP) CWE-288 9.8AI Critical AI 2025-08-27
CVE-2025-34521 Arcserve UDP < 10.2 Reflected Cross-Site Scripting (XSS) — Unified Data Protection (UDP) CWE-79 5.4AI Medium AI 2025-08-27
CVE-2025-34522 Arcserve UDP < 10.2 Pre-Authentication Heap Overflow — Unified Data Protection (UDP) CWE-122 9.8AI Critical AI 2025-08-27
CVE-2025-34523 Arcserve UDP < 10.2 Pre-Authentication Heap Overflow — Unified Data Protection (UDP) CWE-122 9.2 Critical 2025-08-27
CVE-2024-0801 Unauthenticated DoS in Arcserve Unified Data Protection — Unified Data Protection 7.5 High 2024-03-13
CVE-2024-0800 Authentication Bypass via wizardLogin in Arcserve Unified Data Protection — Unified Data Protection CWE-434 8.8 High 2024-03-13
CVE-2024-0799 Authentication Bypass via wizardLogin in Arcserve Unified Data Protection — Unified Data Protection CWE-287 9.8 Critical 2024-03-13
CVE-2023-42000 Arcserve UDP Agent Unauthenticated Path Traversal File Upload — Arcserve UDP CWE-22 9.8 Critical 2023-11-27
CVE-2023-41999 Arcserve UDP Management Authentication Bypass — Arcserve UDP CWE-287 9.8 Critical 2023-11-27
CVE-2023-41998 Arcserve UDP Unauthenticated RCE — Arcserve UDP CWE-434 9.8 Critical 2023-11-27
CVE-2020-27858 Check Point Arcserve D2D 代码问题漏洞 — D2D CWE-611 7.5 - 2021-01-20

This page lists every published CVE security advisory associated with Arcserve. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.