Acronis · Acronis Cyber Protect 15 · CVE-2023-44206
**Name of the Vulnerable Software and Affected Versions**
Acronis Cyber Protect 15 versions before build 35979
**Description**
The issue is related to sensitive information disclosure and manipulation due to improper authorization. It is caused by an error in processing user-controlled authorization keys, which could allow a remote attacker to elevate their privileges.
**Recommendations**
For Acronis Cyber Protect 15 versions before build 35979, update to a version that includes the fix for this issue to prevent sensitive information disclosure and manipulation. As a temporary workaround, consider restricting access to sensitive information and authorization keys to minimize the risk of exploitation.