CVE-2026-77105

Summary

CommServe contained a cryptographic signature verification issue affecting privilege management. Software customers upgrade to resolved maintenance release. Update CommServe and Web Server.

Affected Software

VendorProductVersion RangeStatus
CommvaultCommvault Cloud11.46.0 <= 11.46.19affected
CommvaultCommvault Cloud11.44.0 <= 11.44.19affected
CommvaultCommvault Cloud11.40.0 <= 11.40.71affected
CommvaultCommvault Cloud11.36.0 <= 11.36.122affected

Weaknesses

  • CWE-347: Improper Verification of Cryptographic Signature

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: total

References