📦 Commvault

by Commvault

🔍 What is Commvault?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-57790

HIGH CVSS 8.8 Aug 20, 2025

This CVE describes a path traversal vulnerability that allows remote attackers to access files outside intended directories, potentially leading to remote code execution. It affects systems running vu...

CVE-2025-3928

HIGH CVSS 8.8 Apr 25, 2025

CVE-2025-3928 is a vulnerability in Commvault Web Server that allows authenticated remote attackers to create and execute webshells, potentially leading to complete system compromise. This affects all...

CVE-2025-12776

MEDIUM CVSS 5.4 Jan 7, 2026

This CVE describes a stored Cross-Site Scripting (XSS) vulnerability in the Report Builder component of WebConsole. Attackers with edit permissions can inject malicious scripts that execute when other...

CVE-2025-57788

MEDIUM CVSS 6.5 Aug 20, 2025

This vulnerability allows unauthenticated attackers to execute API calls without credentials in Commvault software, bypassing authentication mechanisms. It affects systems using the vulnerable login m...

CVE-2025-57789

MEDIUM CVSS 5.4 Aug 20, 2025

This vulnerability allows remote attackers to gain administrative control of affected systems by exploiting default credentials during the brief setup window between installation and first administrat...