PT-2026-93254 · Acronis · Acronis Backup Extension For Plesk+2

CVE-2026-87886

·

Published

2026-09-11

·

Updated

2026-10-01

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Acronis Backup plugin for cPanel & WHM (Linux) versions prior to 1.9.3.1021 Acronis Backup extension for Plesk (Linux) versions prior to 1.8.11.638 Acronis Backup plugin for DirectAdmin (Linux) versions prior to 1.2.3.238
Description Local privilege escalation is possible due to insecure default file permissions. An attacker with low-privileged local access to an affected Linux server can escalate their privileges and execute arbitrary code without user interaction. This issue is particularly critical on multi-tenant shared hosting environments where low-privileged accounts are common. Limited, targeted exploitation has been detected specifically against cPanel & WHM deployments.
Recommendations Update Acronis Backup plugin for cPanel & WHM to build 1.9.3.1021 or later. Update Acronis Backup extension for Plesk to build 1.8.11.638 or later. Update Acronis Backup plugin for DirectAdmin to build 1.2.3.238 or later.

Exploit

Fix

LPE

Incorrect Default Permissions

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-14785
CVE-2026-87886

Affected Products

Acronis Backup Extension For Plesk
Acronis Backup Plugin For Directadmin
Acronis Backup Plugin For Cpanel & Whm