CVE-2023-44157: High severity acronis cyber protect vulnerability
Published Sep 27, 2023
·Updated
Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Cyber Protect 15 (Windows) before build 35979.
Affected Software
8 affected components
Acronis Cyber Protect<15
Acronis Cyber Protect=15
Acronis Cyber Protect=15-update1
Acronis Cyber Protect=15-update2
Acronis Cyber Protect=15-update3
Acronis Cyber Protect=15-update4
Acronis Cyber Protect=15-update5
Microsoft Windows
Event History
Sep 27, 2023
CVE Published
via MITRE·12:01 PM
Data Sourced
via MITRE·12:01 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2023-44157?
CVE-2023-44157 is a vulnerability that allows local privilege escalation due to insecure folder permissions.
2
Which products are affected by CVE-2023-44157?
The following products are affected by CVE-2023-44157: Acronis Cyber Protect 15 (Windows) before build 35979.
3
How severe is CVE-2023-44157?
CVE-2023-44157 has a severity rating of 7.8 (High).
4
What is the Common Weakness Enumeration (CWE) for CVE-2023-44157?
The CWE for CVE-2023-44157 is CWE-276.
5
How can I fix CVE-2023-44157?
To fix CVE-2023-44157, update Acronis Cyber Protect 15 (Windows) to build 35979 or later.