CVE-2024-49387: High severity acronis cyber protect vulnerability
Published Oct 15, 2024
·Updated
Cleartext transmission of sensitive information in acep-collector service. The following products are affected: Acronis Cyber Protect 16 (Linux, Windows) before build 38690.
Affected Software
5 affected components
All of the following
Any of the following
Acronis Cyber Protect<=15
Acronis Cyber Protect=16
Acronis Cyber Protect=16-update1
Any of the following
Linux Linux kernel
Microsoft Windows
Event History
Oct 15, 2024
CVE Published
via MITRE·10:34 AM
Data Sourced
via MITRE·10:34 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·11:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-49387?
CVE-2024-49387 has a critical severity rating due to the risk of cleartext transmission of sensitive information.
2
How do I fix CVE-2024-49387?
To fix CVE-2024-49387, upgrade Acronis Cyber Protect 16 to build 38690 or later.
3
Which products are affected by CVE-2024-49387?
CVE-2024-49387 affects Acronis Cyber Protect 16 and Acronis Cyber Protect 16 Update 1 on both Linux and Windows.
4
What type of vulnerability is CVE-2024-49387?
CVE-2024-49387 is a vulnerability related to the cleartext transmission of sensitive information, compromising data security.
5
What are the potential risks of CVE-2024-49387?
The potential risks of CVE-2024-49387 include unauthorized access to sensitive data due to insecure communication channels.