Vulnerabilities > CVE-2018-20014 - NULL Pointer Dereference vulnerability in Urbackup 2.2.6
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
NONE Availability impact
HIGH Summary
In UrBackup 2.2.6, an attacker can send a malformed request to the client over the network, and trigger a fileservplugin/CClientThread.cpp CClientThread::GetFileHashAndMetadata NULL pointer dereference, leading to shutting down the client application.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |