Sensitive Information Disclosure in Acronis Cyber Protect by Acronis
CVE-2023-44205
3.5LOW
Summary
A vulnerability exists in Acronis Cyber Protect 15 that allows for sensitive information disclosure due to improper authorization. This issue impacts versions of the software prior to build 35979, potentially exposing sensitive data to unauthorized users. It is crucial for users of the affected versions to update their software to mitigate this risk. For further details, refer to Acronis's security advisory at SEC-4321.
Affected Version(s)
Acronis Cyber Protect 15 Linux < 35979
References
CVSS V3.1
Score:
3.5
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved