CVE-2025-24829

CVSS 3.0 Score 6.3 of 10 (medium)

Details

Published Jan 31, 2025
Updated: Feb 18, 2025
CWE ID 426

Summary

CVE-2025-24829 is a local privilege escalation vulnerability affecting Acronis Cyber Protect Cloud Agent for Windows. The flaw arises due to DLL hijacking, allowing an attacker to execute code with elevated privileges. Successful exploitation could result in significant compromise of the affected system. Prior to build 39378, Acronis Cyber Protect Cloud Agent is vulnerable to this issue. It's crucial for affected organizations to update their software as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share