CVE-2025-48963: High severity Acronis Cyber Protect Cloud Agent vulnerability
Published Aug 28, 2025
·Updated
Local privilege escalation due to improper soft link handling. The following products are affected: Acronis Cyber Protect Cloud Agent (Linux, macOS, Windows) before build 40296.
Affected Software
1 affected component
Acronis Cyber Protect Cloud Agent<40296
Event History
Aug 28, 2025
CVE Published
via MITRE·09:49 AM
Data Sourced
via MITRE·09:49 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-48963?
The severity of CVE-2025-48963 is classified as high due to its potential for local privilege escalation.
2
How do I fix CVE-2025-48963?
To fix CVE-2025-48963, upgrade to Acronis Cyber Protect Cloud Agent version 40296 or later.
3
Which products are affected by CVE-2025-48963?
Acronis Cyber Protect Cloud Agent for Linux, macOS, and Windows before build 40296 is affected by CVE-2025-48963.
4
What type of vulnerability is CVE-2025-48963?
CVE-2025-48963 is a local privilege escalation vulnerability due to improper handling of soft links.
5
Can CVE-2025-48963 be exploited remotely?
CVE-2025-48963 cannot be exploited remotely; it requires local access to the affected system.