Druva inSync 6.5.0

CPE Details

Druva inSync 6.5.0
6.5.0
2020-03-13
18h44 +00:00
2020-03-13
18h44 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:druva:insync:6.5.0:*:*:*:*:*:*:*

Informations

Vendor

druva

Product

insync

Version

6.5.0

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2019-4001 2020-03-24 20h04 +00:00 Improper input validation in Druva inSync Client 6.5.0 allows a local, authenticated attacker to execute arbitrary NodeJS code.
7.8
High
CVE-2019-4000 2020-02-25 19h28 +00:00 Improper neutralization of directives in dynamically evaluated code in Druva inSync Mac OS Client 6.5.0 allows a local, authenticated attacker to execute arbitrary Python expressions with root privileges.
7.8
High