Show filters
166 Total Results
Displaying 21-30 of 166
Sort by:
Attacker Value
Unknown
CVE-2024-34014
Disclosure Date: November 11, 2024 (last updated November 12, 2024)
Arbitrary file overwrite during recovery due to improper symbolic link handling. The following products are affected: Acronis Backup plugin for cPanel & WHM (Linux) before build 818, Acronis Backup extension for Plesk (Linux) before build 599, Acronis Backup plugin for DirectAdmin (Linux) before build 181.
0
Attacker Value
Unknown
CVE-2024-49392
Disclosure Date: October 17, 2024 (last updated October 19, 2024)
Stored cross-site scripting (XSS) vulnerability on enrollment invitation page. The following products are affected: Acronis Cyber Files (Windows) before build 9.0.0x24.
0
Attacker Value
Unknown
CVE-2024-49391
Disclosure Date: October 17, 2024 (last updated October 19, 2024)
Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Files (Windows) before build 9.0.0x24.
0
Attacker Value
Unknown
CVE-2024-49390
Disclosure Date: October 17, 2024 (last updated October 19, 2024)
Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Files (Windows) before build 9.0.0x24.
0
Attacker Value
Unknown
CVE-2024-49389
Disclosure Date: October 17, 2024 (last updated October 19, 2024)
Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Cyber Files (Windows) before build 9.0.0x24.
0
Attacker Value
Unknown
CVE-2024-49386
Disclosure Date: October 17, 2024 (last updated October 19, 2024)
Sensitive information disclosure due to spell-jacking. The following products are affected: Acronis Cyber Files (Windows) before build 9.0.0x24.
0
Attacker Value
Unknown
CVE-2024-49388
Disclosure Date: October 15, 2024 (last updated February 05, 2025)
Sensitive information manipulation due to improper authorization. The following products are affected: Acronis Cyber Protect 16 (Linux, Windows) before build 38690.
0
Attacker Value
Unknown
CVE-2024-49387
Disclosure Date: October 15, 2024 (last updated February 05, 2025)
Cleartext transmission of sensitive information in acep-collector service. The following products are affected: Acronis Cyber Protect 16 (Linux, Windows) before build 38690.
0
Attacker Value
Unknown
CVE-2024-49384
Disclosure Date: October 15, 2024 (last updated February 05, 2025)
Excessive attack surface in acep-collector service due to binding to an unrestricted IP address. The following products are affected: Acronis Cyber Protect 16 (Linux, Windows) before build 38690.
0
Attacker Value
Unknown
CVE-2024-49383
Disclosure Date: October 15, 2024 (last updated February 05, 2025)
Excessive attack surface in acep-importer service due to binding to an unrestricted IP address. The following products are affected: Acronis Cyber Protect 16 (Linux, Windows) before build 38690.
0