Novastor's vulnerability profile centers on backup and network management products such as NovaBACKUP DataCenter and NovaNET, where the observed weaknesses reflect the input-handling and memory-safety demands of data-protection software. The durable signal involves improper input validation and buffer-boundary issues; current severity, exploitation, and exposure metrics are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Novastor over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2009-0849HIGH Stack-based buffer overflow in the DtbClsLogin function in NovaStor NovaNET 12 allows remote attackers to (1) execute arbitrary code on Linux platforms via a long username field du | Mar 9, 2009 | 7.5 | 36 | NO | YES |
CVE-2016-4899CRITICAL The datamover module in the Linux version of NovaBACKUP DataCenter before 09.06.03.0353 is vulnerable to remote command execution via unspecified attack vectors. | Apr 13, 2017 | 9.8 | 31 | NO | NO |
CVE-2016-4898CRITICAL The datamover module in the Linux version of NovaBACKUP DataCenter before 09.06.03.0353 is vulnerable to remote command execution via unspecified attack vectors. | Apr 13, 2017 | 9.8 | 30 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Novastor.
Media articles that mention a CVE ID that affects a product developed by Novastor — matched by CVE ID, not by vendor name.