CVE-2025-30407: Medium severity Acronis Cyber Protect Cloud Agent vulnerability
Published Mar 26, 2025
·Updated
Local privilege escalation due to a binary hijacking vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 39713.
Affected Software
1 affected component
Acronis Cyber Protect Cloud Agent<39713
Event History
Mar 26, 2025
CVE Published
via MITRE·09:32 PM
Data Sourced
via MITRE·09:32 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeakness
Nov 22, 57208
Event
via FIRST·05:04 PM
Frequently Asked Questions
1
What is the severity of CVE-2025-30407?
CVE-2025-30407 is classified as a critical vulnerability due to its potential for local privilege escalation.
2
How do I fix CVE-2025-30407?
To mitigate CVE-2025-30407, update Acronis Cyber Protect Cloud Agent to build 39713 or later.
3
What products are affected by CVE-2025-30407?
CVE-2025-30407 affects Acronis Cyber Protect Cloud Agent (Windows) versions prior to build 39713.
4
What type of vulnerability is CVE-2025-30407?
CVE-2025-30407 is a local privilege escalation vulnerability caused by binary hijacking.
5
What are the potential risks of exploiting CVE-2025-30407?
Exploiting CVE-2025-30407 could allow an attacker to gain elevated privileges on the affected system.