MSP360 Backup (for Linux) Insecure Filesystem Permissions Vulnerability

Vulnerability

A vulnerability exists in MSP360 Backup version 4.3.1.115 for Linux, where insecure file system permissions allow a low-privileged user to execute commands with root privileges in the 'Online Backup' directory. This vulnerability can be exploited to gain elevated privileges, potentially leading to unauthorized access or modification of backup data.

Impact

Exploitation of this vulnerability allows low-privileged users to execute commands with root privileges, which could be used to manipulate backup processes or access sensitive data.

Remediation

Users are advised to upgrade to MSP360 Backup version 4.4, which addresses this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
10.0
exploitability
3.3
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.