CVE-2024-34017: High severity acronis snap deploy vulnerability
Published Aug 29, 2024
·Updated
Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Snap Deploy (Windows) before build 4569.
Affected Software
5 affected components
Acronis Snap Deploy Windows<6
Acronis Snap Deploy Windows=6
Acronis Snap Deploy Windows=6-update1
Acronis Snap Deploy Windows=6-update1.1
Acronis Snap Deploy Windows=6-update1.2
Event History
Aug 29, 2024
CVE Published
via MITRE·07:14 PM
Data Sourced
via MITRE·07:14 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·08:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-34017?
CVE-2024-34017 has a high severity rating due to its potential for local privilege escalation.
2
How do I fix CVE-2024-34017?
To fix CVE-2024-34017, update Acronis Snap Deploy to version 6 build 4569 or later.
3
What products are affected by CVE-2024-34017?
CVE-2024-34017 affects Acronis Snap Deploy versions prior to build 4569 on Windows.
4
Can CVE-2024-34017 be exploited remotely?
CVE-2024-34017 requires local access to exploit, so it cannot be exploited remotely.
5
What happens if I don't address CVE-2024-34017?
Failing to address CVE-2024-34017 may allow attackers to escalate privileges locally on vulnerable systems.