Description
Local privilege escalation due to incomplete uninstallation cleanup. The following products are affected: Acronis Cyber Protect Home Office (Windows) before build 40107, Acronis Agent (Windows) before build 30025, Acronis Cyber Protect 15 (Windows) before build 30984.
CVSS breakdown
CVSS 3.0
Attack Vector
Local
Attack Complexity
High
Privileges Required
Low
User Interaction
Required
Scope
Changed
Confidentiality
High
Integrity
Low
Availability
Low
Affected products
- Acronis / Acronis Agentunspecified – 30025
- Acronis / Acronis Cyber Protect 15unspecified – 30984
- Acronis / Acronis Cyber Protect Home Officeunspecified – 40107
References
- VENDOR_ADVISORYhttps://security-advisory.acronis.com/advisories/SEC-4459