Skip to main content

Vendor/product archive

druva / insync CVEs

Beta · best-effort

3 CVEs tagged to druva / insync0 Critical, 3 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2020-5798

Published Dec 7, 2020

inSync Client installer for macOS versions v6.8.0 and prior could allow an attacker to gain privileges of a root user from a lower privileged user due to improper integrity checks…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2019-4001

Published Mar 24, 2020

Improper input validation in Druva inSync Client 6.5.0 allows a local, authenticated attacker to execute arbitrary NodeJS code.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2019-4000

Published Feb 25, 2020

Improper neutralization of directives in dynamically evaluated code in Druva inSync Mac OS Client 6.5.0 allows a local, authenticated attacker to execute arbitrary Python expressi…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1