Skip to main content
0-Doubt
NewsInvestorsQuestionnairesDeveloperHelp
AnonymousSign in
0-Doubt — neutral IT/Security research
BrowseResellersCertified analystsRFI/RFP questionnairesHow trust worksHelp & FAQAPI
  1. Home/
  2. Cohesity/
  3. Cohesity FortKnox

Cohesity FortKnox

AI-generated from public sourcesAuto-generated by 0-Doubt from public vendor materials. Not verified by the vendor or an analyst. Check the freshness indicator.Lowest independence — unverified. A higher label means a more independent source — not a better product.How trust works →Secure coding rating: 0/100How this score is computedA product with no known CVEs starts at a neutral score and climbs the longer it goes without one; a product with known CVEs is penalized by severity instead. This one has 10 known CVEs (vendor-level match — see the CVE list below) and is tracked as ~39 days old in our catalog (a stand-in for real release date, which we don't track). The platform admin controls the formula's weights.

Cyber vault solution with immutable backups and air-gapped isolation

by Cohesity · cohesity.com · source ↗

Known CVEs (10)About this listSourced from the public NVD database, matched by vendor name. Shown here at the vendor level — we don't track per-product/version data, so a listed CVE may affect a different product from this vendor, not necessarily this one. “New” means published within the last 30 days. “Actively exploited” means CISA's Known Exploited Vulnerabilities (KEV) catalog confirms real-world exploitation, not just a theoretical severity score.

RSS ⇢
  • CVE-2025-67840 ↗HIGH 7.22026

    Multiple authenticated OS command injection vulnerabilities exist in the Cohesity (formerly Stone Ram) TranZman 4.0 Build 14614 through TZM_1757588060_SEP2025_FULL.depot web application API endpoints …

  • CVE-2025-63912 ↗HIGH 7.52026

    Cohesity TranZman Migration Appliance Release 4.0 Build 14614 was discovered to use a weak cryptography algorithm for data encryption, allowing attackers to trivially reverse the encyption and expose …

  • CVE-2025-63911 ↗HIGH 7.22026

    Cohesity TranZman Migration Appliance Release 4.0 Build 14614 was discovered to contain an authenticated command injection vulnerability.

  • CVE-2025-63910 ↗HIGH 7.22026

    An authenticated arbitrary file upload vulnerability in Cohesity TranZman Migration Appliance Release 4.0 Build 14614 allows attackers with Administrator privileges to execute arbitrary code via uploa…

  • CVE-2025-63909 ↗HIGH 7.22026

    Incorrect access control in the component /opt/SRLtzm/bin/TapeDumper of Cohesity TranZman Migration Appliance Release 4.0 Build 14614 allows attackers to escalate privileges to root and read and write…

  • CVE-2023-33295 ↗MEDIUM 6.52024

    Cohesity DataProtect prior to 6.8.1_u5 or 7.1 was discovered to have a incorrect access control vulnerability due to a lack of TLS Certificate Validation.

  • CVE-2021-36795 ↗HIGH 7.82021

    A permission issue in the Cohesity Linux agent may allow privilege escalation in version 6.5.1b to 6.5.1d-hotfix10, 6.6.0a to 6.6.0b-hotfix1. An underprivileged linux user, if certain environment crit…

  • CVE-2021-28124 ↗MEDIUM 5.92021

    A man-in-the-middle vulnerability in Cohesity DataPlatform support channel in version 6.3 up to 6.3.1g, 6.4 up to 6.4.1c and 6.5.1 through 6.5.1b. Missing server authentication in impacted versions ca…

  • CVE-2021-28123 ↗CRITICAL 9.82021

    Undocumented Default Cryptographic Key Vulnerability in Cohesity DataPlatform version 6.3 prior 6.3.1g, 6.4 up to 6.4.1c and 6.5.1 through 6.5.1b. The ssh key can provide an attacker access to the lin…

  • CVE-2019-11242 ↗HIGH 8.12019

    A man-in-the-middle vulnerability related to vCenter access was found in Cohesity DataPlatform version 5.x and 6.x prior to 6.1.1c. Cohesity clusters did not verify TLS certificates presented by vCent…

Materials

0

No datasheets, whitepapers, case studies, videos, or demos linked yet.

Other Backup as a Service products

see all →
  • Acsense IAM Resilience Platform · Acsense
  • Ahsay Backup Amazon S3 · Ahsay Systems Corporation
  • Ahsay Backup Microsoft Azure · Ahsay Systems Corporation
  • Ahsay Google Workspace Backup · Ahsay Systems Corporation
  • Arcserve Cloud Cyber Resilient Storage · Arcserve
  • Arcserve Cyber Resilient Storage · Arcserve
  • Arpio · Arpio
  • AvePoint Products · AvePoint