PT-2025-5586 · Acronis · Acronis Cyber Protect Cloud Agent

Published

2025-01-30

·

Updated

2025-01-31

·

CVE-2025-24831

CVSS v3.1

6.6

Medium

VectorAV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions Acronis Cyber Protect Cloud Agent (Windows) versions prior to build 39378
Description The issue is related to a local privilege escalation due to an unquoted search path vulnerability. This vulnerability affects the Acronis Cyber Protect Cloud Agent on Windows systems.
Recommendations For versions prior to build 39378, update to build 39378 or later to resolve the issue. As a temporary workaround, consider restricting access to sensitive system paths to minimize the risk of exploitation.

Fix

LPE

Weakness Enumeration

Related Identifiers

BDU:2025-10529
CVE-2025-24831

Affected Products

Acronis Cyber Protect Cloud Agent