CVE-2024-56414

CVSS 3.0 Score 5.5 of 10 (medium)

Details

Published Jan 2, 2025
CWE ID 328

Summary

CVE-2024-56414 is a newly discovered vulnerability affecting Acronis Cyber Protect 16 for Windows, with builds below 39169. The weakness lies in the web installer's integrity check, which utilizes a weak hash algorithm. An attacker could potentially exploit this vulnerability to execute malicious code during the installation process, compromising the targeted system. The use of a weak hash algorithm in the integrity check undermines the security measures intended to protect the installation process and ensures the authenticity of the software, leaving users vulnerable to attacks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share