Sensitive Information Disclosure in Acronis True Image by Acronis
CVE-2024-49385

Currently unrated

Key Information:

Vendor

Acronis

Vendor
CVE Published:
2 January 2025

What is CVE-2024-49385?

A vulnerability exists in Acronis True Image (Windows) that allows for sensitive information disclosure due to improper folder permissions. This security flaw can potentially expose confidential data stored within the application, affecting users who have not upgraded to build 41736 or later. The oversight in permissions can lead to unauthorized access, raising significant privacy and security concerns for both individual and enterprise users. It is crucial for users to address this vulnerability by ensuring their software version is updated to the latest build to mitigate potential risks associated with this issue.

Affected Version(s)

Acronis True Image Windows < 41736

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.