Products: 2
    Vulnerabilities: 9
    Known Exploited: 0
    0
    Critical Level Threats
    9
    High Level Threats
    0
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2021-36668

    URL injection in Driva inSync 6.9.0 for MacOS, allows attackers to force a visit to an arbitrary url via the port parameter to the Electron App.

    Last Modified: Nov 21, 2024
    Published: Jul 11, 2022

    CVE-2021-36667

    Command injection vulnerability in Druva inSync 6.9.0 for MacOS, allows attackers to execute arbitrary commands via crafted payload to the local HTTP server due to un-sanitized call to the python os.system library.

    Last Modified: Nov 21, 2024
    Published: Jul 11, 2022

    CVE-2021-36666

    An issue was discovered in Druva 6.9.0 for MacOS, allows attackers to gain escalated local privileges via the inSyncDecommission.

    Last Modified: Nov 21, 2024
    Published: Jul 11, 2022

    CVE-2021-36665

    An issue was discovered in Druva 6.9.0 for macOS, allows attackers to gain escalated local privileges via the inSyncUpgradeDaemon.

    Last Modified: Nov 21, 2024
    Published: Jul 11, 2022

    CVE-2020-5798

    inSync Client installer for macOS versions v6.8.0 and prior could allow an attacker to gain privileges of a root user from a lower privileged user due to improper integrity checks and directory permissions.

    Last Modified: Nov 21, 2024
    Published: Dec 07, 2020
    Items Per Page