CVE-2019-11551: CODE42 For Enterprise

Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.

In Code42 Enterprise and Crashplan for Small Business through Client version 6.9.1, an attacker can craft a restore request to restore a file through the Code42 app to a location they do not have privileges to write.

Affected products

  • CODE42 CODE42 For Enterprise: up to and including 6.9.1
  • CODE42 Crashplan For Small Business: up to and including 6.9.1

Published 2019-08-21. Last modified 2026-06-17.