CVE-2019-25271: Netgate Data Backup
High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.
NETGATE Data Backup 3.0.620 contains an unquoted service path vulnerability in its NGDatBckpSrv Windows service configuration. Attackers can exploit the unquoted path to inject and execute malicious code with LocalSystem privileges by placing executable files in specific directory locations.
Affected products
- Netgate Data Backup: version 3.0.620 only
Published 2026-02-05. Last modified 2026-06-17.