Local Privilege Escalation Vulnerability in Commvault for Windows
CVE-2024-13975
What is CVE-2024-13975?
A local privilege escalation vulnerability in Commvault for Windows allows an authenticated attacker to compromise designated Windows access nodes from a client system hosting the file server agent. This vulnerability enables the attacker to gain unauthorized access and perform lateral movement within the backup infrastructure, potentially leading to further security breaches. Resolutions have been implemented in versions 11.32.60, 11.34.34, and 11.36.8.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Commvault Windows 11.20.0 < 11.32.60
Commvault Windows 11.28.0 < 11.32.60
Commvault Windows 11.32.0 < 11.32.60
References
CVSS V4
Timeline
Vulnerability published
Vulnerability Reserved
