PT-2026-93254 · Acronis · Acronis Backup Extension For Plesk+2
CVE-2026-87886
·
Published
2026-09-11
·
Updated
2026-10-01
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Acronis Backup plugin for cPanel & WHM (Linux) versions prior to 1.9.3.1021
Acronis Backup extension for Plesk (Linux) versions prior to 1.8.11.638
Acronis Backup plugin for DirectAdmin (Linux) versions prior to 1.2.3.238
Description
Local privilege escalation is possible due to insecure default file permissions. An attacker with low-privileged local access to an affected Linux server can escalate their privileges and execute arbitrary code without user interaction. This issue is particularly critical on multi-tenant shared hosting environments where low-privileged accounts are common. Limited, targeted exploitation has been detected specifically against cPanel & WHM deployments.
Recommendations
Update Acronis Backup plugin for cPanel & WHM to build 1.9.3.1021 or later.
Update Acronis Backup extension for Plesk to build 1.8.11.638 or later.
Update Acronis Backup plugin for DirectAdmin to build 1.2.3.238 or later.
Exploit
Fix
LPE
Incorrect Default Permissions
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Acronis Backup Extension For Plesk
Acronis Backup Plugin For Directadmin
Acronis Backup Plugin For Cpanel & Whm