CVE-2023-45246: High severity acronis agent vulnerability
Sensitive information disclosure and manipulation due to improper authentication. The following products are affected: Acronis Agent (Linux, macOS, Windows) before build 36343.
Other sources
Sensitive information disclosure and manipulation due to missing authorization. The following products are affected: Acronis Cyber Protect Cloud Agent (Linux, macOS, Windows) before build 36343, Acronis Cyber Protect 16 (Linux, macOS, Windows) before build 39169.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-45246?
The severity of CVE-2023-45246 is high with a severity value of 7.1.
Which products are affected by CVE-2023-45246?
Acronis Agent (Linux, macOS, Windows) before build 36343 is affected by CVE-2023-45246.
How does CVE-2023-45246 impact sensitive information?
CVE-2023-45246 can lead to sensitive information disclosure and manipulation due to improper authentication.
How can I fix CVE-2023-45246?
To fix CVE-2023-45246, it is recommended to update Acronis Agent to build 36343 or later.
Where can I find more information about CVE-2023-45246?
More information about CVE-2023-45246 can be found at the following reference: [Acronis Security Advisory](https://security-advisory.acronis.com/advisories/SEC-5903).