First published: Thu May 18 2023(Updated: )
Sensitive information disclosure due to improper authorization. The following products are affected: Acronis Cyber Infrastructure (ACI) before build 5.3.1-38.
Credit: security@acronis.com
Affected Software | Affected Version | How to fix |
---|---|---|
Acronis Cyber Infrastructure | <5.3.1-38 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-2782 is a vulnerability that allows for sensitive information to be disclosed due to improper authorization in Acronis Cyber Infrastructure (ACI) versions up to and including build 5.3.1-38.
Acronis Cyber Infrastructure (ACI) versions up to and including build 5.3.1-38 are affected by CVE-2023-2782.
CVE-2023-2782 has a severity rating of medium with a CVSS score of 5.5.
To fix CVE-2023-2782, it is recommended to update Acronis Cyber Infrastructure (ACI) to at least build 5.3.1-38 or the latest available version.
More information about CVE-2023-2782 can be found at the following reference: [SEC-3475](https://security-advisory.acronis.com/advisories/SEC-3475)