cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2025-24828,https://securityvulnerability.io/vulnerability/CVE-2025-24828,Local Privilege Escalation Vulnerability in Acronis Cyber Protect Cloud Agent for Windows,"A local privilege escalation vulnerability exists in Acronis Cyber Protect Cloud Agent for Windows due to improper handling of dynamic link libraries (DLLs). An attacker with local access could exploit this flaw to execute arbitrary code with elevated privileges, potentially compromising the system. It is essential for users of affected versions to update to build 39378 or later to safeguard against this security risk.",Acronis,Acronis Cyber Protect Cloud Agent,,,0.0004299999854993075,false,,false,false,false,,false,false,false,,2025-01-31T12:43:58.295Z,0 CVE-2025-24827,https://securityvulnerability.io/vulnerability/CVE-2025-24827,Local Privilege Escalation Vulnerability in Acronis Cyber Protect Cloud Agent for Windows,"Acronis Cyber Protect Cloud Agent for Windows is susceptible to a local privilege escalation vulnerability caused by DLL hijacking. This flaw allows attackers to execute arbitrary code with elevated privileges on affected systems, potentially compromising sensitive data and system integrity. Users are advised to upgrade to build 39378 or later to mitigate this risk.",Acronis,Acronis Cyber Protect Cloud Agent,6.3,MEDIUM,0.0004299999854993075,false,,false,false,false,,false,false,false,,2025-01-31T12:43:44.323Z,0 CVE-2025-24829,https://securityvulnerability.io/vulnerability/CVE-2025-24829,Local Privilege Escalation in Acronis Cyber Protect Cloud Agent for Windows,"A local privilege escalation vulnerability exists in the Acronis Cyber Protect Cloud Agent for Windows due to DLL hijacking. When exploited, this vulnerability allows an attacker with local access to gain elevated privileges, potentially compromising the system's security and integrity. Users are advised to update to build 39378 or later to mitigate this risk. For further details, refer to the vendor advisory linked here: SEC-7839.",Acronis,Acronis Cyber Protect Cloud Agent,6.3,MEDIUM,0.0004299999854993075,false,,false,false,false,,false,false,false,,2025-01-31T12:43:28.583Z,0 CVE-2025-24830,https://securityvulnerability.io/vulnerability/CVE-2025-24830,Local Privilege Escalation in Acronis Cyber Protect Cloud Agent for Windows,"Acronis Cyber Protect Cloud Agent for Windows is impacted by a local privilege escalation issue stemming from DLL hijacking vulnerabilities. Attackers could potentially exploit this vulnerability to gain elevated privileges on affected systems, compromising security measures and allowing unauthorized actions.",Acronis,Acronis Cyber Protect Cloud Agent,7,HIGH,0.0004299999854993075,false,,false,false,false,,false,false,false,,2025-01-31T12:43:13.267Z,0 CVE-2025-24831,https://securityvulnerability.io/vulnerability/CVE-2025-24831,Local Privilege Escalation in Acronis Cyber Protect Cloud Agent for Windows,A local privilege escalation vulnerability exists in the Acronis Cyber Protect Cloud Agent for Windows due to an unquoted search path issue. This flaw allows an attacker with local access to manipulate the environment in such a way that they may execute malicious commands with elevated privileges. Users are advised to update to build 39378 or later to mitigate the risk associated with this vulnerability.,Acronis,Acronis Cyber Protect Cloud Agent,6.6,MEDIUM,0.0004299999854993075,false,,false,false,false,,false,false,false,,2025-01-31T12:42:57.048Z,0 CVE-2024-55542,https://securityvulnerability.io/vulnerability/CVE-2024-55542,Local Privilege Escalation Vulnerability in Acronis Cyber Protect Products,"A local privilege escalation vulnerability exists in the Tray Monitor service of Acronis Cyber Protect products, where excessive permissions can lead to unauthorized access and escalation of user privileges. This affects Acronis Cyber Protect 16 and Acronis Cyber Protect Cloud Agent across multiple platforms, including Linux, macOS, and Windows, prior to specified build versions. Users and organizations utilizing these products should take immediate action to update their installations to mitigate potential security risks.",Acronis,"Acronis Cyber Protect 16,Acronis Cyber Protect Cloud Agent",,,0.0004299999854993075,false,,false,false,false,,false,false,false,,2025-01-02T15:26:40.928Z,0 CVE-2024-55539,https://securityvulnerability.io/vulnerability/CVE-2024-55539,Weak Algorithm in RPM Package Signing for Acronis Products,"Acronis Cyber Protect Cloud Agent for Linux is impacted by a vulnerability due to the utilization of a weak algorithm for signing RPM packages. This flaw compromises the integrity of package verification processes, leaving systems at risk for potential exploitation. Users of Acronis Cyber Protect Cloud Agent (Linux) prior to build 39185 should immediately review their systems for exposure to this vulnerability and apply relevant mitigations or updates as necessary to enhance their security posture.",Acronis,Acronis Cyber Protect Cloud Agent,2.5,LOW,0.0004299999854993075,false,,false,false,false,,,false,false,,2024-12-23T14:05:20.298Z,0 CVE-2024-8766,https://securityvulnerability.io/vulnerability/CVE-2024-8766,Local Privilege Escalation Vulnerability in Acronis Cyber Protect Products,"A vulnerability has been identified in Acronis Cyber Protect Cloud Agent and Acronis Cyber Protect 16 that allows local privilege escalation through DLL hijacking. This enables an attacker to exploit the system and gain unauthorized access, potentially leading to further security breaches. Users are advised to upgrade to the latest builds to mitigate these risks. For detailed information, please refer to the vendor advisory.",Acronis,"Acronis Cyber Protect Cloud Agent,Acronis Cyber Protect 16",,,0.0004299999854993075,false,,false,false,false,,,false,false,,2024-09-16T20:15:00.000Z,0 CVE-2023-48683,https://securityvulnerability.io/vulnerability/CVE-2023-48683,Sensitive Information Disclosure in Acronis Cyber Protect Products,"A vulnerability in Acronis Cyber Protect products allows for the unauthorized access and manipulation of sensitive information due to inadequate authorization mechanisms. This affects multiple platforms including Linux, macOS, and Windows, potentially exposing users to security risks. Users are advised to upgrade to the latest builds to mitigate this risk.",Acronis,"Acronis Cyber Protect Cloud Agent,Acronis Cyber Protect 16",,,0.0004299999854993075,false,,false,false,false,,,false,false,,2024-04-29T16:15:00.000Z,0 CVE-2024-34010,https://securityvulnerability.io/vulnerability/CVE-2024-34010,Local Privilege Escalation Vulnerability in Acronis Cyber Protect Products,"A vulnerability has been identified in Acronis Cyber Protect Cloud Agent and Acronis Cyber Protect 16 that allows for local privilege escalation. This vulnerability arises due to an unquoted search path, which could be exploited to gain unauthorized elevated privileges on affected Windows systems. Versions prior to build 37758 of Acronis Cyber Protect Cloud Agent and build 38690 of Acronis Cyber Protect 16 are susceptible. Users of these products are encouraged to update their software to mitigate potential security risks.",Acronis,"Acronis Cyber Protect Cloud Agent,Acronis Cyber Protect 16",8.2,HIGH,0.0004299999854993075,false,,false,false,false,,,false,false,,2024-04-29T16:15:00.000Z,0 CVE-2023-48684,https://securityvulnerability.io/vulnerability/CVE-2023-48684,Sensitive Information Disclosure in Acronis Cyber Protect Cloud Agent,"The vulnerability results from inadequate authorization checks within the Acronis Cyber Protect Cloud Agent, permitting unauthorized access to sensitive information. Attackers exploiting this flaw can manipulate data and potentially escalate their access privileges. The issue affects users of the software on Linux, macOS, and Windows platforms prior to build 37758, making prompt updates essential to mitigate risks.",Acronis,Acronis Cyber Protect Cloud Agent,7.1,HIGH,0.0004299999854993075,false,,false,false,false,,,false,false,,2024-04-29T16:15:00.000Z,0 CVE-2023-48676,https://securityvulnerability.io/vulnerability/CVE-2023-48676,Sensitive Information Disclosure in Acronis Cyber Protect Cloud Agent by Acronis,"A vulnerability in Acronis Cyber Protect Cloud Agent for Windows allows unauthorized access to sensitive information due to inadequate authorization mechanisms. Attackers can exploit this flaw to manipulate and disclose confidential data, leading to potential privacy breaches and operational risks for affected users. Acronis has released an advisory and recommends upgrading to build 36943 or later to mitigate this issue.",Acronis,Acronis Cyber Protect Cloud Agent,3.3,LOW,0.0004299999854993075,false,,false,false,false,,,false,false,,2023-12-14T14:15:00.000Z,0 CVE-2023-48677,https://securityvulnerability.io/vulnerability/CVE-2023-48677,Local Privilege Escalation Vulnerability in Acronis Cyber Protect Home Office for Windows,"Acronis Cyber Protect Home Office for Windows is susceptible to a local privilege escalation vulnerability caused by DLL hijacking. This issue allows an attacker to execute arbitrary code with elevated privileges, potentially compromising system integrity. Users are advised to update to the latest build (40901 or higher) to mitigate risks associated with this vulnerability.",Acronis,"Acronis Cyber Protect Home Office,Acronis Cyber Protect Cloud Agent",7.8,HIGH,0.000539999979082495,false,,false,false,false,,,false,false,,2023-12-12T09:15:00.000Z,0 CVE-2023-45248,https://securityvulnerability.io/vulnerability/CVE-2023-45248,Local Privilege Escalation in Acronis Cyber Protect Products,"A local privilege escalation vulnerability exists in Acronis Cyber Protect products due to improper handling of dynamic-link library (DLL) files, allowing an attacker to leverage this flaw for unauthorized access and execution of arbitrary code. This issue impacts versions prior to build 36497 of Acronis Cyber Protect Cloud Agent and versions before build 37391 of Acronis Cyber Protect 16, presenting potential risks for users and organizations relying on these solutions.",Acronis,"Acronis Cyber Protect Cloud Agent,Acronis Cyber Protect 16",7.3,HIGH,0.0004199999966658652,false,,false,false,false,,,false,false,,2023-10-09T12:15:00.000Z,0 CVE-2023-45247,https://securityvulnerability.io/vulnerability/CVE-2023-45247,Sensitive Information Disclosure in Acronis Cyber Protect Products,"A vulnerability exists in Acronis Cyber Protect products that allows unauthorized access to sensitive information due to missing authorization checks. This exposure may lead to data manipulation, putting users at risk. The affected versions include Acronis Cyber Protect Cloud Agent prior to build 36497 and Acronis Cyber Protect 16 prior to build 39169. Users are urged to update their software to mitigate potential risks.",Acronis,"Acronis Cyber Protect Cloud Agent,Acronis Cyber Protect 16",7.1,HIGH,0.0004299999854993075,false,,false,false,false,,,false,false,,2023-10-09T12:15:00.000Z,0 CVE-2023-45246,https://securityvulnerability.io/vulnerability/CVE-2023-45246,Sensitive Information Disclosure and Manipulation in Acronis Cyber Protect Products,"A vulnerability has been identified in Acronis Cyber Protect products that allows for sensitive information disclosure and manipulation due to missing authorization mechanisms. Users of Acronis Cyber Protect Cloud Agent and Acronis Cyber Protect 16 on Linux, macOS, and Windows platforms, especially those running builds prior to 36343 and 39169 respectively, are advised to review the detailed advisory and implement the necessary updates to safeguard their systems.",Acronis,"Acronis Cyber Protect Cloud Agent,Acronis Cyber Protect 16",7.1,HIGH,0.0004299999854993075,false,,false,false,false,,,false,false,,2023-10-06T11:15:00.000Z,0 CVE-2023-45244,https://securityvulnerability.io/vulnerability/CVE-2023-45244,Sensitive Information Disclosure Vulnerability in Acronis Cyber Protect Products,"A vulnerability exists within Acronis Cyber Protect products, allowing unauthorized access to sensitive information due to inadequate authorization checks. Specifically, this affects Acronis Cyber Protect Cloud Agent and Acronis Cyber Protect 16 across multiple operating systems prior to specific builds. Attackers could exploit this flaw to manipulate or access sensitive data without sufficient permissions, leading to potential data breaches.",Acronis,"Acronis Cyber Protect Cloud Agent,Acronis Cyber Protect 16",7.1,HIGH,0.0004299999854993075,false,,false,false,false,,,false,false,,2023-10-06T10:15:00.000Z,0 CVE-2023-44211,https://securityvulnerability.io/vulnerability/CVE-2023-44211,Sensitive Information Disclosure in Acronis Cyber Protect Products,"A missing authorization vulnerability affects Acronis Cyber Protect products, allowing unauthorized access to sensitive information. This issue impacts multiple builds across the Cyber Protect Cloud Agent and Cyber Protect 16, potentially exposing users' data to risk. Acronis has provided an advisory detailing the affected versions and recommended actions to mitigate this vulnerability.",Acronis,"Acronis Cyber Protect Cloud Agent,Acronis Cyber Protect 16",7.1,HIGH,0.0004299999854993075,false,,false,false,false,,,false,false,,2023-10-05T22:15:00.000Z,0 CVE-2023-45241,https://securityvulnerability.io/vulnerability/CVE-2023-45241,Sensitive Information Leak in Acronis Cyber Protect Products by Acronis,"A vulnerability has been identified in Acronis Cyber Protect Cloud Agent and Acronis Cyber Protect 16 that allows for sensitive information to be leaked through log files. This issue affects multiple platforms including Linux, macOS, and Windows, making it critical for users to update their software to the latest builds to mitigate the risk of data exposure. Users are encouraged to consult Acronis security advisories for comprehensive guidance on remediation steps.",Acronis,"Acronis Cyber Protect Cloud Agent,Acronis Cyber Protect 16",4.4,MEDIUM,0.0004299999854993075,false,,false,false,false,,,false,false,,2023-10-05T22:15:00.000Z,0 CVE-2023-44213,https://securityvulnerability.io/vulnerability/CVE-2023-44213,Sensitive Information Disclosure in Acronis Cyber Protect Products,"The vulnerability allows unauthorized access to sensitive system information due to the excessive collection of data by Acronis Cyber Protect products. This flaw affects multiple versions of Acronis Cyber Protect Cloud Agent and Acronis Cyber Protect 16 for Windows, potentially exposing critical user data to attackers. Users are urged to update to the latest builds to mitigate this risk.",Acronis,"Acronis Cyber Protect Cloud Agent,Acronis Cyber Protect 16",5.5,MEDIUM,0.0004299999854993075,false,,false,false,false,,,false,false,,2023-10-05T22:15:00.000Z,0