Metrics
Affected Vendors & Products
Thu, 21 Aug 2025 14:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Commvault commvault
|
|
CPEs | cpe:2.3:a:commvault:commvault:*:*:*:*:*:*:*:* | |
Vendors & Products |
Commvault commvault
|
|
Metrics |
cvssV3_1
|
Thu, 21 Aug 2025 12:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Commvault
Commvault commcell |
|
Vendors & Products |
Commvault
Commvault commcell |
Wed, 20 Aug 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Wed, 20 Aug 2025 03:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An issue was discovered in Commvault before 11.36.60. During the brief window between installation and the first administrator login, remote attackers may exploit the default credential to gain admin control. This is limited to the setup phase, before any jobs have been configured. | |
Title | Vulnerability in Initial Administrator Login Process | |
Weaknesses | CWE-257 | |
References |
| |
Metrics |
cvssV4_0
|

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-08-21T03:55:09.241Z
Reserved: 2025-08-19T18:25:57.338Z
Link: CVE-2025-57789

Updated: 2025-08-20T13:31:13.038Z

Status : Analyzed
Published: 2025-08-20T04:16:03.847
Modified: 2025-08-21T14:40:24.883
Link: CVE-2025-57789

No data.

Updated: 2025-08-21T12:31:30Z