CVE-2022-45449: Infoleak
Published Jul 16, 2024
·Updated
Sensitive information disclosure due to excessive privileges assigned to Acronis Agent. The following products are affected: Acronis Cyber Protect 15 (Windows, Linux) before build 30984.
Affected Software
9 affected components
Acronis Cyber Protect 15<30984
All of the following
Any of the following
Acronis Cyber Protect<15
Acronis Cyber Protect=15
Acronis Cyber Protect=15-update1
Acronis Cyber Protect=15-update2
Acronis Cyber Protect=15-update3
Acronis Cyber Protect=15-update4
Any of the following
Linux Linux kernel
Microsoft Windows
Event History
Jul 16, 2024
CVE Published
via MITRE·02:47 PM
Data Sourced
via MITRE·02:47 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-45449?
CVE-2022-45449 is categorized as a medium severity vulnerability due to sensitive information disclosure.
2
How do I fix CVE-2022-45449?
To fix CVE-2022-45449, upgrade Acronis Cyber Protect 15 to build 30984 or later.
3
What products are affected by CVE-2022-45449?
CVE-2022-45449 affects Acronis Cyber Protect 15 for both Windows and Linux platforms before build 30984.
4
What causes CVE-2022-45449?
CVE-2022-45449 is caused by excessive privileges assigned to the Acronis Agent.
5
Is there a workaround for CVE-2022-45449?
There are no documented workarounds for CVE-2022-45449; the recommended action is to apply the software update.