Companies Warned of Commvault Vulnerability Exploitation

Post Reply
Shane1145
Posts: 1854
Joined: Wed Sep 25, 2024 2:31 pm

Companies Warned of Commvault Vulnerability Exploitation

Post by Shane1145 »

The ongoing exploitation of a Commvault vulnerability that was targeted as a zero-day is likely part of a broader campaign against software-as-a-service (SaaS) solutions, the US cybersecurity agency CISA says.

Tracked as CVE-2025-3928 (CVSS score of 8.7), the unspecified security defect allows remote attackers to create and execute webshells, fully compromising vulnerable instances.

https://www.securityweek.com/companies- ... loitation/
Post Reply