Msp360 maintains a focused backup and data-protection product line, with the durable signal centered on configuration and access-control issues, particularly improper default permissions that can expose backup repositories and credentials. Treat this as a compact vendor profile rather than a broad trend line; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Msp360 over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-43596CRITICAL An insecure file system permissions vulnerability in MSP360 Backup 8.0 allows a low privileged user to execute commands with SYSTEM level privileges using a specially crafted file | May 22, 2025 | 9.8 | 30 | NO | NO |
CVE-2025-43595CRITICAL An insecure file system permissions vulnerability in MSP360 Backup 4.3.1.115 allows a low privileged user to execute commands with root privileges in the 'Online Backup' folder. Up | May 1, 2025 | 9.8 | 30 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Msp360.
Media articles that mention a CVE ID that affects a product developed by Msp360 — matched by CVE ID, not by vendor name.