First published: Mon Nov 11 2024(Updated: )
Sensitive information disclosure during file browsing due to improper symbolic link handling. The following products are affected: Acronis Backup plugin for cPanel & WHM (Linux) before build 1.8.3.818, Acronis Backup plugin for cPanel & WHM (Linux) before build 1.9.1.892.
Credit: security@acronis.com
Affected Software | Affected Version | How to fix |
---|---|---|
Acronis Backup | <1.8.3.818 | |
Acronis Backup | <1.9.1.892 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-34015 is classified as a medium severity vulnerability due to its potential for sensitive information disclosure.
To mitigate CVE-2024-34015, upgrade the Acronis Backup plugin for cPanel & WHM (Linux) to build 818 or later.
CVE-2024-34015 affects the Acronis Backup plugin for cPanel & WHM (Linux) versions prior to build 818.
CVE-2024-34015 is a vulnerability related to sensitive information disclosure due to improper handling of symbolic links.
As of now, there are no publicly known exploits for CVE-2024-34015, but it poses a risk for information leakage.