CVE-2019-3999
25.02.2020, 19:15
Improper neutralization of special elements used in an OS command in Druva inSync Windows Client 6.5.0 allows a local, unauthenticated attacker to execute arbitrary operating system commands with SYSTEM privileges.
Vendor | Product | Version |
---|---|---|
druva | insync_client | 6.5.0 |
𝑥
= Vulnerable software versions
References