Critical Flaw Exposes ArcServe Backup to Remote Code Execution

A recent adversary simulation conducted by the MDSec ActiveBreach Red Team discovered a critical vulnerability in the ArcServe UDP Backup software. This flaw, tracked as CVE-2023-26258, affects versions 7.0 through 9.0 of the software, allows remote code execution (RCE), and…








