PT-2023-5792 · Acronis · Acronis Cyber Protect 16+2

Published

2023-10-05

·

Updated

2024-02-27

·

CVE-2023-45241

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Acronis Cyber Protect Cloud Agent versions prior to build 35739 Acronis Cyber Protect 16 versions prior to build 37391 Acronis Agent versions prior to build 35739
Description The issue is related to a sensitive information leak through log files, which can be exploited to obtain confidential information due to insufficient protection of registration data.
Recommendations For Acronis Cyber Protect Cloud Agent versions prior to build 35739, update to a version after build 35739 to resolve the issue. For Acronis Cyber Protect 16 versions prior to build 37391, update to a version after build 37391 to resolve the issue. For Acronis Agent versions prior to build 35739, update to a version after build 35739 to resolve the issue.

Fix

Insertion into Log File

Weakness Enumeration

Related Identifiers

BDU:2023-06478
CVE-2023-45241

Affected Products

Acronis Agent
Acronis Cyber Protect 16
Acronis Cyber Protect Cloud Agent