peter bassill · operator
$ cve CVE-2016-4899 JSON

CVE-2016-4899

9.8
CRITICAL · CVSS 3.0 · EPSS 5.6% (pctl 93)

In your normal cycle

Critical by CVSS (9.8), but no sign of active exploitation.

Description

The datamover module in the Linux version of NovaBACKUP DataCenter before 09.06.03.0353 is vulnerable to remote command execution via unspecified attack vectors.

Scoring

CVSS9.8 (CRITICAL, v3.0)
VectorCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS5.65% — more likely to be exploited than 93% of all CVEs
WeaknessCWE-20
On CISA KEVno
Public exploitnone known
Published2017-04-13
Last modified2026-06-17

Affected (1)

VendorProduct
novastornovabackup datacenter

References

→ the Explorer  ·  watch your stack  ·  NVD