409
VMScore

CVE-2020-25736

Published: 15/07/2021 Updated: 03/03/2023
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Acronis True Image 2019 update 1 through 2021 update 1 on macOS allows local privilege escalation due to an insecure XPC service configuration.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

acronis true image 2019

acronis true image 2021

acronis true image 2020

Exploits

Acronis TrueImage versions 2019 update 1 through 2021 update 1 are vulnerable to privilege escalation The comacronistrueimagehelper helper tool does not perform any validation on connecting clients, which gives arbitrary clients the ability to execute functions provided by the helper tool with root privileges ...