CVE-2023-41745
CVSS 3.1 Score 5.5 of 10 (medium)
Details
Published Aug 31, 2023
Updated: Sep 6, 2023
CWE ID 200
CWE ID 668
Summary
CVE-2023-41745 is a sensitive information disclosure vulnerability that affects Acronis Agent and Acronis Cyber Protect versions prior to build 30991 (Linux, macOS, Windows) and build 35979 (Linux, macOS, Windows), respectively. This issue arises from the excessive collection of system information, which may inadvertently reveal sensitive data to unauthorized users. This could potentially lead to privacy breaches and other security risks. It is strongly recommended that users upgrade to the latest builds to mitigate this vulnerability.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- Acronis Agent
- Acronis Cyber Protect
Affected Vendors
- Acronis International