Critical severity9.8NVD Advisory· Published Feb 2, 2024· Updated Jul 9, 2026
CVE-2024-22902
CVE-2024-22902
Description
Vinchin Backup & Recovery v7.2 was discovered to be configured with default root credentials.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Vinchin/Backup & Recoverydescription
- Range: = 7.2
- cpe:2.3:a:vinchin:vinchin_backup_and_recovery:*:*:*:*:*:*:*:*Range: <=7.2
Patches
Vulnerability mechanics
References
4- blog.leakix.net/2024/01/vinchin-backup-rce-chain/nvdExploitThird Party Advisory
- seclists.org/fulldisclosure/2024/Jan/31nvdMailing ListThird Party Advisory
- packetstormsecurity.com/files/176795/Vinchin-Backup-And-Recovery-7.2-Default-Root-Credentials.htmlnvd
- seclists.org/fulldisclosure/2024/Jan/31nvd
News mentions
0No linked articles in our index yet.