Sensitive Information Disclosure in Acronis True Image by Acronis
CVE-2024-49385

Currently unrated

Key Information:

Vendor
Acronis
Vendor
CVE Published:
2 January 2025

Summary

A vulnerability exists in Acronis True Image (Windows) that allows for sensitive information disclosure due to improper folder permissions. This security flaw can potentially expose confidential data stored within the application, affecting users who have not upgraded to build 41736 or later. The oversight in permissions can lead to unauthorized access, raising significant privacy and security concerns for both individual and enterprise users. It is crucial for users to address this vulnerability by ensuring their software version is updated to the latest build to mitigate potential risks associated with this issue.

Affected Version(s)

Acronis True Image Windows < 41736

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.