PT-2025-23803 · Acronis · Acronis Cyber Protect 16

Published

2025-06-04

·

Updated

2025-06-04

·

CVE-2025-48960

CVSS v3.1

5.9

Medium

VectorAV:A/AC:H/PR:N/UI:N/S:U/C:L/I:H/A:N
Name of the Vulnerable Software and Affected Versions Acronis Cyber Protect 16 versions prior to build 39938
Description The issue is related to a weak server key used for TLS encryption. This affects Acronis Cyber Protect 16 on various operating systems, including Linux, macOS, and Windows.
Recommendations For Acronis Cyber Protect 16 versions prior to build 39938, update to build 39938 or later to resolve the issue. As a temporary workaround, consider restricting the use of TLS encryption until the update is applied.

Fix

Inadequate Encryption Strength

Weakness Enumeration

Related Identifiers

BDU:2025-06511
CVE-2025-48960

Affected Products

Acronis Cyber Protect 16