CVE-2023-41745

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Aug 31, 2023
Updated: Sep 6, 2023
CWE ID 200
CWE ID 668

Summary

CVE-2023-41745 is a sensitive information disclosure vulnerability that affects Acronis Agent and Acronis Cyber Protect versions prior to build 30991 (Linux, macOS, Windows) and build 35979 (Linux, macOS, Windows), respectively. This issue arises from the excessive collection of system information, which may inadvertently reveal sensitive data to unauthorized users. This could potentially lead to privacy breaches and other security risks. It is strongly recommended that users upgrade to the latest builds to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Acronis Agent
  • Acronis Cyber Protect

Affected Vendors

  • Acronis International