CVE-2023-2355: High severity acronis snap deploy vulnerability
Published Apr 27, 2023
·Updated
Local privilege escalation due to a DLL hijacking vulnerability. The following products are affected: Acronis Snap Deploy (Windows) before build 3900.
Affected Software
3 affected components
Acronis Snap Deploy Windows<6
Acronis Snap Deploy Windows=6
Acronis Snap Deploy Windows=6-update1
Remediation
Patch Available
Event History
Apr 27, 2023
CVE Published
via MITRE·06:45 PM
Data Sourced
via MITRE·06:45 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-2355?
CVE-2023-2355 is classified as a high severity vulnerability due to its potential for local privilege escalation.
2
How do I fix CVE-2023-2355?
To fix CVE-2023-2355, update Acronis Snap Deploy to build 3900 or later.
3
Which versions of Acronis Snap Deploy are affected by CVE-2023-2355?
Acronis Snap Deploy versions prior to build 3900 are affected by CVE-2023-2355.
4
What type of vulnerability is CVE-2023-2355?
CVE-2023-2355 is a local privilege escalation vulnerability resulting from DLL hijacking.
5
Is there a workaround for CVE-2023-2355 if I can't update Acronis Snap Deploy?
No specific workaround is recommended for CVE-2023-2355; applying the update is the only solution.