Description
An issue discovered in MSP360 Backup Agent v7.8.5.15 and v7.9.4.84 allows attackers to obtain network share credentials used in a backup due to enginesettings.list being encrypted with a hard coded key.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
| Link | Providers |
|---|---|
| https://www.proactivelabs.com.au/2024/06/19/cloudberry.html |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-02T04:19:20.577Z
Reserved: 2024-06-21T00:00:00.000Z
Link: CVE-2024-39206
Updated: 2024-08-02T04:19:20.577Z
Status : Deferred
Published: 2024-07-02T18:15:03.290
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-39206
No data.
OpenCVE Enrichment
No data.
Weaknesses