An authentication bypass vulnerability exists in Arcserve Unified Data Protection 9.2 and 8.1 in the edge-app-base-webui.jar!com.ca.arcserve.edge.app.base.ui.server.EdgeLoginServiceImpl.doLogin() function within wizardLogin.
References
| Link | Resource |
|---|---|
| https://www.tenable.com/security/research/tra-2024-07 | Exploit Third Party Advisory |
| https://www.tenable.com/security/research/tra-2024-07 | Exploit Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
14 Oct 2025, 18:00
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://www.tenable.com/security/research/tra-2024-07 - Exploit, Third Party Advisory | |
| CPE | cpe:2.3:a:arcserve:udp:8.1:*:*:*:*:*:*:* cpe:2.3:a:arcserve:udp:9.2:*:*:*:*:*:*:* |
|
| CWE | NVD-CWE-noinfo | |
| First Time |
Arcserve
Arcserve udp |
21 Nov 2024, 08:47
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://www.tenable.com/security/research/tra-2024-07 - |
14 Mar 2024, 12:52
| Type | Values Removed | Values Added |
|---|---|---|
| Summary |
|
13 Mar 2024, 19:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-03-13 19:15
Updated : 2025-10-14 18:00
NVD link : CVE-2024-0799
Mitre link : CVE-2024-0799
CVE.ORG link : CVE-2024-0799
JSON object : View
Products Affected
arcserve
- udp
CWE
