CVE-2024-55540

CVSS 3.0 Score 6.6 of 10 (medium)

Details

Published Jan 2, 2025
CWE ID 427

Summary

CVE-2024-55540 is a local privilege escalation vulnerability that can be exploited through DLL hijacking. This issue affects Acronis Cyber Protect 16 for Windows before build 39169. An attacker who successfully exploits this vulnerability can gain elevated system privileges, potentially compromising the security of the affected system. This DLL hijacking vulnerability poses a significant risk, particularly for those using outdated versions of Acronis Cyber Protect 16 on their Windows machines. To mitigate this risk, it is recommended that users upgrade to the latest version of the software as soon as possible.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share