High severity7.8NVD Advisory· Published May 22, 2025· Updated Jun 17, 2026
CVE-2025-43596
CVE-2025-43596
Description
An insecure file system permissions vulnerability in MSP360 Backup 8.0 allows a low privileged user to execute commands with SYSTEM level privileges using a specially crafted file with an arbitrary file backup target. Upgrade to MSP360 Backup 8.1.1.19 (released on 2025-05-15).
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- MSP360/Backupv5Range: 8.0
Patches
Vulnerability mechanics
References
4- raw.githubusercontent.com/cisagov/CSAF/develop/csaf_files/IT/white/2025/va-25-119-01.jsonnvdThird Party Advisory
- www.cve.org/CVERecordnvdThird Party Advisory
- help.msp360.com/cloudberry-backup/security/admin-privilegesnvdProduct
- help.msp360.com/cloudberry-backup/whats-newnvdRelease Notes
News mentions
0No linked articles in our index yet.