Browse all 30 CVE security advisories affecting Commvault. AI-powered Chinese analysis, POCs, and references for each vulnerability.
Commvault provides enterprise data management and backup solutions, serving as critical infrastructure for data protection and recovery. Historically, vulnerabilities have included remote code execution, cross-site scripting, and privilege escalation, often stemming from authentication bypasses or insecure default configurations. While no major public security incidents have been widely reported, the 16 documented CVEs highlight potential risks in web interfaces and API endpoints. The platform's security posture emphasizes encryption and access controls, though organizations should regularly patch and audit deployments to mitigate exposure to known exploits targeting its backup and data management capabilities.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-57791 | Argument Injection Vulnerability in CommServe — CommCell CWE-88 | 8.8 | - | 2025-08-20 |
| CVE-2025-57790 | Path Traversal Vulnerability — CommCell CWE-36 | 9.8 | - | 2025-08-20 |
| CVE-2025-57789 | Vulnerability in Initial Administrator Login Process — CommCell CWE-257 | 8.1 | - | 2025-08-20 |
| CVE-2025-57788 | Unauthorized API Access Risk — CommCell CWE-259 | 9.4 | - | 2025-08-20 |
| CVE-2021-34997 | Commvault CommCell 代码问题漏洞 — CommCell CWE-434 | 8.8 | - | 2022-01-13 |
| CVE-2021-34996 | Commvault CommCell 安全漏洞 — CommCell CWE-749 | 8.8 | - | 2022-01-13 |
| CVE-2021-34995 | Commvault CommCell 代码问题漏洞 — CommCell CWE-434 | 8.8 | - | 2022-01-13 |
| CVE-2021-34994 | Commvault CommCell 代码注入漏洞 — CommCell CWE-20 | 8.8 | - | 2022-01-13 |
| CVE-2021-34993 | Commvault CommCell 授权问题漏洞 — CommCell CWE-287 | 9.8 | - | 2022-01-13 |
This page lists every published CVE security advisory associated with Commvault. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.