Vinchin
vinchin
9 CVEs • 1 product
Products (1)
Click to collapseToggle
Products (1)
Click to collapse
CVEs (9)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Vinchin 1Vinchin Backup And Recovery Jun 17, 2026 Mar 14, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 Vinchin Backup and Recovery 7.2 and Earlier is vulnerable to Authenticated Remote Code Execution (RCE) via the getVerifydiyResult function in ManoeuvreHandler.class.php. |
Vinchin Backup & Recovery v7.2 was discovered to contain an authenticated remote code execution (RCE) vulnerability via the deleteUpdateAPK function. |
1Vinchin 1Vinchin Backup And Recovery Jun 17, 2026 Feb 2, 2024 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Vinchin Backup & Recovery v7.2 was discovered to be configured with default root credentials. |
1Vinchin 1Vinchin Backup And Recovery Jun 17, 2026 Feb 2, 2024 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Vinchin Backup & Recovery v7.2 was discovered to use default MYSQL credentials. |
Vinchin Backup & Recovery v7.2 was discovered to contain an authenticated remote code execution (RCE) vulnerability via the setNetworkCardInfo function. |
Vinchin Backup & Recovery v7.2 was discovered to contain an authenticated remote code execution (RCE) vulnerability via the syncNtpTime function. |
1Vinchin 1Vinchin Backup And Recovery Jun 17, 2026 Oct 27, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 VinChin Backup & Recovery v5.0.*, v6.0.*, v6.7.*, and v7.0.* was discovered to contain hardcoded credentials. |
1Vinchin 1Vinchin Backup And Recovery Jun 17, 2026 Oct 27, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 VinChin Backup & Recovery v5.0.*, v6.0.*, v6.7.*, and v7.0.* was discovered to contain a command injection vulnerability. |
1Vinchin 1Vinchin Backup And Recovery Jun 17, 2026 Aug 3, 2022 N/A· v4 9.8 CRITICAL· v3 N/A· v2 This vulnerability allows remote attackers to bypass authentication on affected installations of Vinchin Backup and Recovery 6.5.0.17561. Authentication is not required to exploit this vulnerability. The specific flaw ex...Show more |