CVE-2025-24827: Medium severity Acronis Cyber Protect Cloud Agent vulnerability
Published Jan 31, 2025
·Updated
Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 39378.
Affected Software
1 affected component
Acronis Cyber Protect Cloud Agent<39378
Event History
Jan 31, 2025
CVE Published
via MITRE·12:43 PM
Data Sourced
via MITRE·12:43 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-24827?
CVE-2025-24827 has been classified as a high severity vulnerability due to its potential for local privilege escalation.
2
How do I fix CVE-2025-24827?
To mitigate CVE-2025-24827, upgrade Acronis Cyber Protect Cloud Agent to version 39378 or later.
3
What products are affected by CVE-2025-24827?
CVE-2025-24827 affects Acronis Cyber Protect Cloud Agent (Windows) versions prior to build 39378.
4
What type of vulnerability is CVE-2025-24827?
CVE-2025-24827 is a local privilege escalation vulnerability caused by DLL hijacking.
5
Can CVE-2025-24827 allow unauthorized access?
Yes, CVE-2025-24827 can potentially allow unauthorized users to escalate their privileges on affected systems.