CVE-2020-35145: High severity acronis true image vulnerability
Published Jan 29, 2021
·Updated
Acronis True Image for Windows prior to 2021 Update 3 allowed local privilege escalation due to a DLL hijacking vulnerability in multiple components, aka an Untrusted Search Path issue.
Affected Software
1 affected component
Acronis True Image Windows<=2021
Event History
Jan 29, 2021
CVE Published
via MITRE·06:49 AM
Data Sourced
via MITRE·06:49 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2020-35145.
2
What is the severity rating for CVE-2020-35145?
The severity rating for CVE-2020-35145 is 7.8 (high).
3
Which software versions are affected by CVE-2020-35145?
Acronis True Image for Windows prior to 2021 Update 3 is affected by CVE-2020-35145.
4
What is the impact of CVE-2020-35145?
CVE-2020-35145 allows local privilege escalation due to a DLL hijacking vulnerability in multiple components of Acronis True Image for Windows prior to 2021 Update 3.
5
How can I fix CVE-2020-35145?
To fix CVE-2020-35145, update Acronis True Image for Windows to version 2021 Update 3 or later.