Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
acronis vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv3
CVE-2022-30990
Sensitive information disclosure due to insecure folder permissions. The following products are affected: Acronis Cyber Protect 15 (Linux) before build 29240, Acronis Agent (Linux) before build 28037
Acronis Cyber Protect
Acronis Cyber Protect 15
Acronis Agent
7.1
CVSSv3
CVE-2023-48676
Sensitive information disclosure and manipulation due to missing authorization. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 36943.
Acronis Cyber Protect Cloud Agent 21
Acronis Cyber Protect Cloud Agent 22
Acronis Cyber Protect Cloud Agent 23
7.8
CVSSv3
CVE-2022-45451
Local privilege escalation due to insecure driver communication port permissions. The following products are affected: Acronis Cyber Protect Home Office (Windows) before build 40173, Acronis Agent (Windows) before build 30600, Acronis Cyber Protect 15 (Windows) before build 30984...
Acronis Cyber Protect 15
Acronis Cyber Protect Home Office
Acronis Agent
7.8
CVSSv3
CVE-2020-25736
Acronis True Image 2019 update 1 through 2021 update 1 on macOS allows local privilege escalation due to an insecure XPC service configuration.
Acronis True Image 2019
Acronis True Image 2021
Acronis True Image 2020
8.1
CVSSv3
CVE-2021-32581
Acronis True Image before 2021 Update 4 for Windows, Acronis True Image before 2021 Update 5 for Mac, Acronis Agent prior to build 26653, Acronis Cyber Protect prior to build 27009 did not implement SSL certificate validation.
Acronis Cyber Protect Cloud
Acronis Cyber Protection Agent
Acronis True Image 2021
5.3
CVSSv3
CVE-2023-44205
Sensitive information disclosure due to improper authorization. The following products are affected: Acronis Cyber Protect 15 (Linux, Windows) before build 35979.
Acronis Cyber Protect
Acronis Cyber Protect 15
9.1
CVSSv3
CVE-2023-44206
Sensitive information disclosure and manipulation due to improper authorization. The following products are affected: Acronis Cyber Protect 15 (Linux, Windows) before build 35979.
Acronis Cyber Protect
Acronis Cyber Protect 15
5.4
CVSSv3
CVE-2023-44207
Stored cross-site scripting (XSS) vulnerability in protection plan name. The following products are affected: Acronis Cyber Protect 15 (Linux, Windows) before build 35979.
Acronis Cyber Protect
Acronis Cyber Protect 15
7.8
CVSSv3
CVE-2021-38088
Acronis Cyber Protect 15 for Windows prior to build 27009 allowed local privilege escalation via binary hijacking.
Acronis Cyber Protect
Acronis Cyber Protect 15
6.1
CVSSv3
CVE-2022-30992
Open redirect via user-controlled query parameter. The following products are affected: Acronis Cyber Protect 15 (Linux, Windows) before build 29240
Acronis Cyber Protect
Acronis Cyber Protect 15
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-34377
CVE-2024-20859
CVE-2023-49606
inject
arbitrary
CVE-2024-33788
CVE-2024-30973
IDOR
CVE-2024-33907
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »