CVE-2018-25261

· NIST NVD ↗

Iperius Backup 5.8.1 contains a local buffer overflow vulnerability in the structured exception handling (SEH) mechanism that allows local attackers to execute arbitrary code by supplying a malicious file path. Attackers can create a backup job with a crafted payload in the external file location field that triggers a buffer overflow when the backup job executes, enabling code execution with application privileges.

HIGH
CVSS severity
8.4
CVSS base score
2026-04-22
Published

CWE codes

CWE-787

Affected products

entersrl:iperius_backup

Sources