CVE-2023-44210: High severity Acronis Agent vulnerability
Sensitive information disclosure and manipulation due to missing authorization. The following products are affected: Acronis Agent (Linux, macOS, Windows) before build 29258.
Other sources
Sensitive information disclosure and manipulation due to missing authorization. The following products are affected: Acronis Cyber Protect Cloud Agent (Linux, macOS, Windows) before build 29258, Acronis Cyber Protect 17 (Linux, macOS, Windows) before build 41186.
— MITRE
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is CVE-2023-44210?
CVE-2023-44210 is a vulnerability that allows sensitive information disclosure and manipulation due to missing authorization in Acronis Agent before build 29258.
Which products are affected by CVE-2023-44210?
The following products are affected: Acronis Agent (Linux, macOS, Windows) before build 29258.
What is the severity of CVE-2023-44210?
CVE-2023-44210 has a severity rating of 5.5 (high).
How can I fix CVE-2023-44210?
To fix CVE-2023-44210, update Acronis Agent to build 29258 or later.
Where can I find more information about CVE-2023-44210?
You can find more information about CVE-2023-44210 in the following references: [1] [2]