CVE-2025-48960: Weak Encryption
Published Jun 4, 2025
·Updated
Weak server key used for TLS encryption. The following products are affected: Acronis Cyber Protect 16 (Linux, macOS, Windows) before build 39938.
Affected Software
1 affected component
Acronis Cyber Protect 16<39938
Event History
Jun 4, 2025
CVE Published
via MITRE·01:26 PM
Data Sourced
via MITRE·01:26 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-48960?
CVE-2025-48960 is classified as a high-severity vulnerability due to the use of a weak server key for TLS encryption.
2
How do I fix CVE-2025-48960?
To fix CVE-2025-48960, update Acronis Cyber Protect 16 to build 39938 or later.
3
What products are impacted by CVE-2025-48960?
CVE-2025-48960 affects Acronis Cyber Protect 16 on Linux, macOS, and Windows prior to build 39938.
4
What are the risks associated with CVE-2025-48960?
The risks associated with CVE-2025-48960 include potential interception and decryption of sensitive data due to weak TLS encryption.
5
How can I verify if my version of Acronis is vulnerable to CVE-2025-48960?
To verify if your version is vulnerable to CVE-2025-48960, check if your build number is prior to 39938 in Acronis Cyber Protect 16.