Show filters
83 Total Results
Displaying 21-30 of 83
Sort by:
Attacker Value
Unknown

CVE-2024-8903

Disclosure Date: September 23, 2024 (last updated February 26, 2025)
Local active protection service settings manipulation due to unnecessary privileges assignment. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows, macOS) before build 38565.
0
Attacker Value
Unknown

CVE-2024-8767

Disclosure Date: September 17, 2024 (last updated February 26, 2025)
Sensitive data disclosure and manipulation due to unnecessary privileges assignment. The following products are affected: Acronis Backup plugin for cPanel & WHM (Linux) before build 619, Acronis Backup extension for Plesk (Linux) before build 555, Acronis Backup plugin for DirectAdmin (Linux) before build 147.
0
Attacker Value
Unknown

CVE-2024-8766

Disclosure Date: September 16, 2024 (last updated February 26, 2025)
Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 38235, Acronis Cyber Protect 16 (Windows) before build 39169.
0
Attacker Value
Unknown

CVE-2024-34016

Disclosure Date: September 16, 2024 (last updated February 26, 2025)
Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 38235.
0
Attacker Value
Unknown

CVE-2024-8731

Disclosure Date: September 13, 2024 (last updated February 26, 2025)
The Cron Jobs plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 1.2.9. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.
Attacker Value
Unknown

CVE-2024-34013

Disclosure Date: July 18, 2024 (last updated February 26, 2025)
Local privilege escalation due to OS command injection vulnerability. The following products are affected: Acronis True Image (macOS) before build 41396.
0
Attacker Value
Unknown

CVE-2024-34011

Disclosure Date: April 29, 2024 (last updated February 26, 2025)
Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 37758.
0
Attacker Value
Unknown

CVE-2024-34010

Disclosure Date: April 29, 2024 (last updated February 26, 2025)
Local privilege escalation due to unquoted search path vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 37758, Acronis Cyber Protect 16 (Windows) before build 38690.
0
Attacker Value
Unknown

CVE-2023-48684

Disclosure Date: April 29, 2024 (last updated February 26, 2025)
Sensitive information disclosure and manipulation due to missing authorization. The following products are affected: Acronis Cyber Protect Cloud Agent (Linux, macOS, Windows) before build 37758.
0
Attacker Value
Unknown

CVE-2023-48683

Disclosure Date: April 29, 2024 (last updated February 26, 2025)
Sensitive information disclosure and manipulation due to missing authorization. The following products are affected: Acronis Cyber Protect Cloud Agent (Linux, macOS, Windows) before build 37758, Acronis Cyber Protect 16 (Linux, macOS, Windows) before build 39169.
0