CVE-2024-36068: Rubrik Cloud Data Management

Critical severity, CVSS 9.8. EPSS: 0.5% chance of exploitation in the next 30 days.

An incorrect access control vulnerability in Rubrik CDM versions prior to 9.1.2-p1, 9.0.3-p6 and 8.1.3-p12, allows an attacker with network access to execute arbitrary code.

Affected products

  • Rubrik Cloud Data Management: before 8.1.3 (fixed in 8.1.3); from 9.0.0, before 9.0.3 (fixed in 9.0.3); from 9.1.0, before 9.1.2 (fixed in 9.1.2); version 8.1.3 only; version 9.0.3 only; version 9.1.2 only

Published 2024-08-27. Last modified 2026-06-17.