CVE-2021-44203: Stored cross-site scripting (XSS) was possible in protection plan details
Published Nov 29, 2021
·Updated
Stored cross-site scripting (XSS) was possible in protection plan details. The following products are affected: Acronis Cyber Protect 15 (Windows, Linux) before build 28035
Affected Software
12 affected components
All of the following
Any of the following
Acronis Cyber Protect<15
Acronis Cyber Protect=15
Acronis Cyber Protect=15-update1
Acronis Cyber Protect=15-update2
Any of the following
Linux Linux kernel
Microsoft Windows
Acronis Cyber Protect<15
Acronis Cyber Protect=15
Acronis Cyber Protect=15-update1
Acronis Cyber Protect=15-update2
Linux Linux kernel
Microsoft Windows
Remediation
Patch Available
Event History
Nov 29, 2021
CVE Published
via MITRE·06:19 PM
Data Sourced
via MITRE·06:19 PM
DescriptionWeakness
Data Sourced
via NVD·07:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2021-44203.
2
What is the severity of CVE-2021-44203?
The severity rating for CVE-2021-44203 is medium with a score of 5.4.
3
Which products are affected by CVE-2021-44203?
The following products are affected by CVE-2021-44203: Acronis Cyber Protect 15 (Windows, Linux) before build 28035.
4
What is the CWE ID associated with CVE-2021-44203?
The CWE ID associated with CVE-2021-44203 is CWE-79.
5
How can I fix this vulnerability?
To fix this vulnerability, update Acronis Cyber Protect 15 to build 28035 or later.