CVE-2023-45247

CVSS 3.1 Score 7.1 of 10 (high)

Details

Published Oct 9, 2023
Updated: Jan 2, 2025
CWE ID 862

Summary

CVE-2023-45247 is a vulnerability that allows for sensitive information disclosure and manipulation due to missing authorization. This issue affects Acronis Cyber Protect Cloud Agent for Linux, macOS, and Windows, as well as Acronis Cyber Protect for Linux, macOS, and Windows, before their respective builds 36497 and 39169. Successful exploitation of this vulnerability could result in unauthorized access to confidential data, potentially leading to significant security risks. Users are strongly encouraged to update their Acronis products to the latest builds to mitigate this issue.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Acronis Agent

Affected Vendors

  • Acronis International