CVE-2024-8903: Medium severity acronis cyber protect cloud agent vulnerability
Published Sep 23, 2024
·Updated
Local active protection service settings manipulation due to unnecessary privileges assignment. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows, macOS) before build 38565.
Affected Software
1 affected component
Acronis Cyber Protect Cloud Agent<38565
Event History
Sep 23, 2024
CVE Published
via MITRE·08:57 AM
Data Sourced
via MITRE·08:57 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·09:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-8903?
CVE-2024-8903 is classified as a moderate severity vulnerability due to improper privilege assignment.
2
How do I fix CVE-2024-8903?
To fix CVE-2024-8903, update Acronis Cyber Protect Cloud Agent to version 38565 or later.
3
What products are affected by CVE-2024-8903?
CVE-2024-8903 affects Acronis Cyber Protect Cloud Agent for both Windows and macOS prior to build 38565.
4
What types of issues does CVE-2024-8903 lead to?
CVE-2024-8903 can lead to local manipulation of active protection service settings due to unnecessary privilege assignments.
5
Is CVE-2024-8903 a local or remote vulnerability?
CVE-2024-8903 is a local vulnerability that requires access to the affected machine to exploit.