peter bassill · operator
$ cve CVE-2025-34028 JSON

CVE-2025-34028 KEV

10.0
CRITICAL · CVSS 3.1 · EPSS 97.6% (pctl 100)

Patch first

On CISA KEV — known exploited in the wild, due 2025-05-23.

Description

The Commvault Command Center Innovation Release allows an unauthenticated actor to upload ZIP files that represent install packages that, when expanded by the target server, are vulnerable to path traversal vulnerability that can result in Remote Code Execution via malicious JSP. This issue affects Command Center Innovation Release: 11.38.0 to 11.38.20. The vulnerability is fixed in 11.38.20 with SP38-CU20-433 and SP38-CU20-436 and also fixed in 11.38.25 with SP38-CU25-434 and SP38-CU25-438.

Scoring

CVSS10.0 (CRITICAL, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
EPSS97.55% — more likely to be exploited than 100% of all CVEs
WeaknessCWE-22
On CISA KEVyes — remediate by 2025-05-23
Public exploitnone known
Published2025-04-22
Last modified2026-06-17

CISA KEV

NameCommvault Command Center Path Traversal Vulnerability
Added2025-05-02
Due2025-05-23
Vendor / productCommvault / Command Center
Ransomware usenone reported

Affected (3)

VendorProduct
commvaultcommvault
linuxlinux kernel
microsoftwindows

References

→ the Explorer  ·  watch your stack  ·  NVD