PT-2026-26996 · Iperius · Iperius Backup

Bzyo

·

Published

2026-03-22

·

Updated

2026-03-22

·

CVE-2019-25608

CVSS v3.1

8.4

High

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Iperius Backup version 6.1.0
Description A privilege escalation issue allows low-privilege users to execute arbitrary programs with elevated privileges by creating backup jobs. Attackers can configure these jobs to run malicious batch files or programs before or after backup operations. These processes execute with the privileges of the Iperius Backup Service account, such as Local System or Administrator, leading to arbitrary code execution.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Weakness Enumeration

Related Identifiers

CVE-2019-25608

Affected Products

Iperius Backup