CVE-2024-56414

CVSS 3.0 Score 5.5 of 10 (medium)

Details

Published Jan 2, 2025
CWE ID 328

Summary

CVE-2024-56414 refers to a vulnerability in Acronis Cyber Protect 16 for Windows, where the web installer's integrity check utilizes a weak hash algorithm. This weakness enables an attacker to potentially manipulate the installer files, leading to potential compromise of the system during installation. Products affected by this vulnerability are those with builds lower than 39169. It is crucial that users update their Acronis Cyber Protect installation as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share