CVE-2026-41952: Input Validation
Local privilege escalation due to improper input validation. The following products are affected: Acronis DeviceLock DLP (Windows) before build 9.0.93212, Acronis Cyber Protect Cloud Agent (Windows) before build 42183.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-41952?
CVE-2026-41952 is classified as a local privilege escalation vulnerability.
How do I fix CVE-2026-41952?
To fix CVE-2026-41952, update Acronis DeviceLock DLP to version 9.0.93212 or later, and Acronis Cyber Protect Cloud Agent to version 42183 or later.
What causes CVE-2026-41952?
CVE-2026-41952 is caused by improper input validation within the affected software.
Which products are affected by CVE-2026-41952?
CVE-2026-41952 affects Acronis DeviceLock DLP versions prior to 9.0.93212 and Acronis Cyber Protect Cloud Agent versions prior to 42183.
Can CVE-2026-41952 be exploited remotely?
CVE-2026-41952 is a local privilege escalation vulnerability, meaning it requires local access to the affected system for exploitation.