Skip to main content

May I know if Apache Vulnerability CVE-2022-24112 is affecting Commvault

CVE-2022-24112/CVE-2022-24112.yaml at main · Mr-xn/CVE-2022-24112 · GitHub

@Harwie , let me look into this for you.


@Mike Struening , May I have an update on this?

 

Thanks

 

Harwie


Still digging, though I see you have a case for this.  Keep me posted and I’ll do the same.


Hi Mike,

 

Any update on this Apache vulnerability?

 

 


We use Apache Tomcat to provide Web Console functionality. 

Reviewing the CVE posted this is explicitly related to a separate product “Apache APISIX” I have not found any indication, documentation, or prior case with apisix deployed with Commvault. If you do have this present on your server, kindly confirm the path in which this is found.


Hi Sean,

Thanks for your reply, I will update this to the customer.