PT-2023-5798 · Acronis · Acronis Cyber Protect 16+2

CVE-2023-45246

·

Publicado

2023-10-06

·

Atualizado

2025-01-02

CVSS v3.1

7.1

Alta

VetorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions Acronis Cyber Protect Cloud Agent versions prior to build 36343 Acronis Cyber Protect 16 versions prior to build 39169 Acronis Agent versions prior to build 36343
Description The issue is related to sensitive information disclosure and manipulation due to missing authorization or improper authentication. This allows an attacker to gain unauthorized access to protected information.
Recommendations For Acronis Cyber Protect Cloud Agent versions prior to build 36343, update to a version after build 36343 to resolve the issue. For Acronis Cyber Protect 16 versions prior to build 39169, update to a version after build 39169 to resolve the issue. For Acronis Agent versions prior to build 36343, update to a version after build 36343 to resolve the issue.

Correção

Missing Authorization

Improper Authentication

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2023-06484
CVE-2023-45246

Produtos afetados

Acronis Agent
Acronis Cyber Protect 16
Acronis Cyber Protect Cloud Agent