Vulnerabilities > Ironmountain

DATE CVE VULNERABILITY TITLE RISK
2011-12-05 CVE-2011-2397 Improper Input Validation vulnerability in Ironmountain Connected Backup 8.4
The Agent service in Iron Mountain Connected Backup 8.4 allows remote attackers to execute arbitrary code via a crafted opcode 13 request that triggers use of the LaunchCompoundFileAnalyzer class to send request data to the System.getRunTime.exec method.
network
low complexity
ironmountain CWE-20
critical
10.0