Vulnerabilities
Vulnerable Software
Security Vulnerabilities
CommServe contained a cryptographic signature verification issue affecting privilege management. Software customers upgrade to resolved maintenance release. Update CommServe and Web Server.
CVSS Score
8.7
EPSS Score
0.003
Published
2026-09-08
Cvlaunchd contained a missing authorization issue affecting command execution authorization. Software customers upgrade to resolved maintenance release. Update all Commvault installations, including Commserve, Webserver, Command Center, Media Agents, Clients and HyperScale X.
CVSS Score
7.7
EPSS Score
0.006
Published
2026-09-08
Command Center API contained an authentication bypass issue affecting privilege management. Software customers upgrade to resolved maintenance release. Update Command Center.
CVSS Score
9.3
EPSS Score
0.006
Published
2026-09-08
DataCube contained a path traversal issue affecting security feature enforcement. Software customers upgrade to resolved maintenance release. Update Content Extractor and Index Store.
CVSS Score
8.5
EPSS Score
0.002
Published
2026-09-08
Content Extractor contained a deserialization of untrusted data issue affecting privilege management. Software customers upgrade to resolved maintenance release. Update Content Extractor.
CVSS Score
7.3
EPSS Score
0.003
Published
2026-09-08
Private Metrics Server contained a missing authentication condition affecting metrics upload functionality and service availability. Software customers upgrade to resolved maintenance release. Update Private Metrics Server.
CVSS Score
8.8
EPSS Score
0.005
Published
2026-09-08
Private Metrics Server contained an SQL injection condition affecting database operations. Software customers upgrade to resolved maintenance release. Update Private Metrics Server.
CVSS Score
8.8
EPSS Score
0.005
Published
2026-09-08
CommServe contained a stack-based buffer overflow issue affecting service availability. Software customers upgrade to resolved maintenance release. Update CommServe.
CVSS Score
8.7
EPSS Score
0.005
Published
2026-09-08
CommServe contained a heap-based buffer overflow issue affecting service availability. Software customers upgrade to resolved maintenance release. Update CommServe.
CVSS Score
8.7
EPSS Score
0.005
Published
2026-09-08
CVE-2026-75650
Known exploited
Adobe Commerce is affected by an Improper Neutralization of Special Elements Used in a Template Engine vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could exploit this vulnerability to execute arbitrary code. Exploitation of this issue does not require user interaction. Scope is changed.
CVSS Score
10.0
EPSS Score
0.039
Published
2026-09-07


Contact Us

Shodan ® - All rights reserved