PT-2024-25643 · Acronis · Acronis Snap Deploy

CVE-2024-34017

·

Published

2024-08-29

·

Updated

2024-09-12

CVSS v3.1

7.3

High

VectorAV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Acronis Snap Deploy (Windows) versions prior to build 4569
Description The issue is related to a local privilege escalation due to a DLL hijacking vulnerability. This vulnerability allows attackers to increase their privileges locally in certain products.
Recommendations For Acronis Snap Deploy (Windows) versions prior to build 4569, update to build 4569 or later to resolve the issue. As a temporary workaround, consider restricting access to vulnerable system components until a patch is applied.

Fix

Uncontrolled Search Path Element

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-34017

Affected Products

Acronis Snap Deploy