First published: Thu Oct 17 2024(Updated: )
Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Cyber Files (Windows) before build 9.0.0x24.
Credit: security@acronis.com
Affected Software | Affected Version | How to fix |
---|---|---|
Acronis Cyber Files | <9.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-49389 is classified as a local privilege escalation vulnerability with a moderate severity level.
To mitigate CVE-2024-49389, ensure that folder permissions for Acronis Cyber Files are correctly configured to prevent unauthorized access.
CVE-2024-49389 affects Acronis Cyber Files on Windows versions prior to build 9.0.0x24.
A temporary workaround for CVE-2024-49389 involves adjusting folder permissions until a software update can be applied.
CVE-2024-49389 requires local access to the system for exploitation, thus it cannot be easily exploited remotely.