CVE-2021-32579: High severity acronis true image vulnerability
Published Aug 5, 2021
·Updated
Acronis True Image prior to 2021 Update 4 for Windows and Acronis True Image prior to 2021 Update 5 for macOS allowed an unauthenticated attacker (who has a local code execution ability) to tamper with the micro-service API.
Affected Software
9 affected components
Acronis True Image Macos=2021
Acronis True Image Windows=2021
Acronis True Image Macos=2021-update_1
Acronis True Image Windows=2021-update_1
Acronis True Image Macos=2021-update_2
Acronis True Image Windows=2021-update_2
Acronis True Image Macos=2021-update_3
Acronis True Image Windows=2021-update_3
Acronis True Image Macos=2021-update_4
Event History
Aug 5, 2021
CVE Published
via MITRE·07:04 PM
Data Sourced
via MITRE·07:04 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2021-32579?
The severity of CVE-2021-32579 is high with a CVSS score of 7.8.
2
Which Acronis True Image versions are affected by CVE-2021-32579?
Acronis True Image versions prior to 2021 Update 4 for Windows and prior to 2021 Update 5 for macOS are affected by CVE-2021-32579.
3
How can an attacker exploit CVE-2021-32579?
An attacker with local code execution ability can exploit CVE-2021-32579 to tamper with the micro-service API.
4
Is authentication required to exploit CVE-2021-32579?
No, authentication is not required to exploit CVE-2021-32579.
5
How can I fix CVE-2021-32579?
To fix CVE-2021-32579, users should update Acronis True Image to 2021 Update 4 for Windows or 2021 Update 5 for macOS.