PT-2022-20439 · Acronis · Acronis Cyber Protect 15+1

Netero1010

·

Published

2022-05-18

·

Updated

2023-06-29

·

CVE-2022-30991

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Acronis Cyber Protect 15 versions before build 29240
Description The issue is related to HTML injection via report name.
Recommendations For Acronis Cyber Protect 15 versions before build 29240, update to a version after build 29240 to resolve the issue.

Fix

Special Elements Injection

XSS

Weakness Enumeration

Related Identifiers

CVE-2022-30991

Affected Products

Acronis
Acronis Cyber Protect 15