← Back to browse · API

CVE-2024-0799

Severity
CRITICAL
CVSS
9.8
EPSS
0.04342
Risk score
40.72
CISA KEV
No
PoC
No
Published
2024-03-13
Modified
2025-12-16
First seen
2026-08-07
Aliases
EUVD-2024-16586, GHSA-82QQ-QR66-5PC5
Products
Arcserve:Unified Data Protection 0 ≤8.1, Arcserve:Unified Data Protection 0 ≤9.2
Sources
euvd EUVD-2024-16586

Description

An authentication bypass vulnerability exists in Arcserve Unified Data Protection 9.2 and 8.1 in the edge-app-base-webui.jar!com.ca.arcserve.edge.app.base.ui.server.EdgeLoginServiceImpl.doLogin() function within wizardLogin.

References