Acronis · Acronis Cyber Protect 15 · CVE-2023-44161
**Name of the Vulnerable Software and Affected Versions**
Acronis Cyber Protect 15 versions before build 35979
**Description**
The issue is related to sensitive information manipulation due to cross-site request forgery, which can be exploited by a remote attacker to impact the integrity of protected information. This is caused by insufficient authentication of executed requests.
**Recommendations**
For Acronis Cyber Protect 15 versions before build 35979, update to a version after build 35979 to resolve the issue. As a temporary workaround, consider implementing additional authentication measures for requests to minimize the risk of exploitation.