CVE-2023-48676: High severity acronis agent vulnerability
Sensitive information disclosure and manipulation due to missing authorization. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 36943.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-48676?
The severity of CVE-2023-48676 is categorized as high due to sensitive information disclosure and manipulation risks.
How do I fix CVE-2023-48676?
To fix CVE-2023-48676, upgrade Acronis Cyber Protect Cloud Agent to build 36943 or later.
Which products are affected by CVE-2023-48676?
CVE-2023-48676 affects Acronis Cyber Protect Cloud Agent versions 21-update3, 21-update6, 21-update7, 22-update2 to 22-update11, and 23-update1 to 23-update12.
What type of vulnerability is CVE-2023-48676?
CVE-2023-48676 is a vulnerability related to missing authorization, leading to sensitive information disclosure.
Is Microsoft Windows vulnerable to CVE-2023-48676?
No, Microsoft Windows itself is not vulnerable, but the Acronis Cyber Protect Cloud Agent running on it may be.