Format String Vulnerability in Kaseya Unitrends Backup Appliance
CVE-2021-43041
8.8HIGH
What is CVE-2021-43041?
A format string vulnerability has been identified in the Kaseya Unitrends Backup Appliance preceding version 10.5.5. This issue allows an attacker to craft a malicious HTTP request, which can lead to potential arbitrary code execution or other unintended operations through the privileged vaultServer application. As a result, unauthorized users may exploit this vulnerability to manipulate the execution flow of the application, posing significant security risks.