CVE-2023-41742: High severity acronis agent vulnerability
Excessive attack surface due to binding to an unrestricted IP address. The following products are affected: Acronis Agent (Linux, macOS, Windows) before build 30430, Acronis Cyber Protect 15 (Linux, macOS, Windows) before build 35979.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this vulnerability?
The vulnerability ID is CVE-2023-41742.
What is the severity of CVE-2023-41742?
The severity of CVE-2023-41742 is high with a CVSS score of 7.5.
Which products are affected by CVE-2023-41742?
The following products are affected by CVE-2023-41742: Acronis Agent (Linux, macOS, Windows) before build 30430, Acronis Cyber Protect 15 (Linux, macOS, Windows) before build 35979.
How does CVE-2023-41742 impact Acronis Agent?
CVE-2023-41742 exposes Acronis Agent to an excessive attack surface due to binding to an unrestricted IP address.
How can I fix CVE-2023-41742?
To fix CVE-2023-41742, update Acronis Agent (Linux, macOS, Windows) to build 30430 or later, and Acronis Cyber Protect 15 (Linux, macOS, Windows) to build 35979 or later.