VYPR

Backblaze

by Backblaze

CVEs (3)

  • CVE-2026-19820HigSep 1, 2026
    risk 0.51cvss —epss 0.00

    A vulnerability in the Backblaze Client allows a local user to make the system not bootable by creating a link from Backblaze's folder to Windows OS system files during a backup. Successful exploitation requires an administrator-level system change that results in the absence of…

  • CVE-2020-8290HigDec 27, 2020
    risk 0.51cvss 7.8epss 0.01

    Backblaze for Windows and Backblaze for macOS before 7.0.0.439 suffer from improper privilege management in `bztransmit` helper due to lack of permission handling and validation before creation of client update directories allowing for local escalation of privilege via rogue…

  • CVE-2020-8289HigDec 27, 2020
    risk 0.51cvss 7.8epss 0.05

    Backblaze for Windows before 7.0.1.433 and Backblaze for macOS before 7.0.1.434 suffer from improper certificate validation in `bztransmit` helper due to hardcoded whitelist of strings in URLs where validation is disabled leading to possible remote code execution via client…