First published: Mon Nov 29 2021(Updated: )
Cross-site scripting (XSS) was possible in notification pop-ups. The following products are affected: Acronis Cyber Protect 15 (Windows, Linux) before build 28035
Credit: security@acronis.com
Affected Software | Affected Version | How to fix |
---|---|---|
Acronis Cyber Protect | <15 | |
Acronis Cyber Protect | =15 | |
Acronis Cyber Protect | =15-update1 | |
Acronis Cyber Protect | =15-update2 | |
Linux Linux kernel | ||
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this cross-site scripting (XSS) vulnerability is CVE-2021-44201.
Acronis Cyber Protect 15 (Windows, Linux) before build 28035 is affected.
The severity of the CVE-2021-44201 vulnerability is medium with a CVSS score of 6.1.
To fix the CVE-2021-44201 vulnerability, you should update Acronis Cyber Protect 15 to a version equal to or later than build 28035.
You can find more information about the CVE-2021-44201 vulnerability in the Acronis Security Advisory SEC-3167.