CVE-2023-44209: High severity Acronis Agent vulnerability
Local privilege escalation due to improper soft link handling. The following products are affected: Acronis Agent (Linux, macOS, Windows) before build 29051.
Other sources
Local privilege escalation due to improper soft link handling. The following products are affected: Acronis Cyber Protect Cloud Agent (Linux, macOS, Windows) before build 29051, Acronis Cyber Protect 17 (Linux, macOS, Windows) before build 41186.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-44209?
CVE-2023-44209 is a vulnerability that allows local privilege escalation due to improper soft link handling.
Which products are affected by CVE-2023-44209?
The affected products include Acronis Agent (Linux, macOS, Windows) before build 29051.
What is the severity of CVE-2023-44209?
The severity of CVE-2023-44209 is high with a severity value of 7.8.
How do I fix CVE-2023-44209?
To fix CVE-2023-44209, upgrade Acronis Agent to build 29051.
Where can I find more information about CVE-2023-44209?
You can find more information about CVE-2023-44209 at the following reference: https://security-advisory.acronis.com/advisories/SEC-2119