PT-2024-25643 · Acronis · Acronis Snap Deploy

Published

2024-08-29

·

Updated

2024-09-12

·

CVE-2024-34017

CVSS v3.1

7.3

High

VectorAV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Acronis Snap Deploy (Windows) versions prior to build 4569
Description The issue is related to a local privilege escalation due to a DLL hijacking vulnerability. This vulnerability allows attackers to increase their privileges locally in certain products.
Recommendations For Acronis Snap Deploy (Windows) versions prior to build 4569, update to build 4569 or later to resolve the issue. As a temporary workaround, consider restricting access to vulnerable system components until a patch is applied.

Fix

Uncontrolled Search Path Element

Weakness Enumeration

Related Identifiers

CVE-2024-34017

Affected Products

Acronis Snap Deploy