PT-2024-25641 · Acronis · Acronis Backup Plugin For Cpanel & Whm

Milos Colakovic

+1

·

Published

2024-11-11

·

Updated

2025-02-27

·

CVE-2024-34015

CVSS v3.1

3.3

Low

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Acronis Backup plugin for cPanel & WHM (Linux) versions prior to build 818
Description The issue is related to sensitive information disclosure during file browsing due to improper symbolic link handling. This can lead to unauthorized access and potential data compromise.
Recommendations For Acronis Backup plugin for cPanel & WHM (Linux) versions prior to build 818, upgrade to build 818 or later to mitigate the risks of unauthorized access and potential data compromise. As a temporary workaround, consider restricting access to sensitive files and directories to minimize the risk of exploitation.

Fix

Weakness Enumeration

Related Identifiers

CVE-2024-34015

Affected Products

Acronis Backup Plugin For Cpanel & Whm