Vulnerability Details CVE-2023-41999
An authentication bypass exists in Arcserve UDP prior to version 9.2. An unauthenticated, remote attacker can obtain a valid authentication identifier that allows them to authenticate to the management console and perform tasks that require authentication.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 35.8%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2023-41999
-
-
cpe:2.3:a:arcserve:udp:5.0
-
cpe:2.3:a:arcserve:udp:6.0
-
cpe:2.3:a:arcserve:udp:6.5
-
cpe:2.3:a:arcserve:udp:7.0
-
cpe:2.3:a:arcserve:udp:9.0.6034