PT-2022-12011 · Acronis · Acronis True Image 2021+1

Xdanes09

·

Published

2022-02-04

·

Updated

2022-02-09

·

CVE-2021-44206

CVSS v3.1

7.3

High

VectorAV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Acronis Cyber Protect Home Office (Windows) versions prior to build 39612 Acronis True Image 2021 (Windows) versions prior to build 39287
Description The issue is related to a local privilege escalation due to a DLL hijacking vulnerability in the Acronis Media Builder service.
Recommendations For Acronis Cyber Protect Home Office (Windows) versions prior to build 39612, update to build 39612 or later. For Acronis True Image 2021 (Windows) versions prior to build 39287, update to build 39287 or later.

Fix

Uncontrolled Search Path Element

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-44206

Affected Products

Acronis Cyber Protect Home Office
Acronis True Image 2021