← Back

CVE-2021-44204

nvd nist
Published: Feb 4, 2022Modified: Nov 21, 2024

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

Local privilege escalation via named pipe due to improper access control checks. The following products are affected: Acronis Cyber Protect 15 (Windows) before build 28035, Acronis Agent (Windows) before build 27147, Acronis Cyber Protect Home Office (Windows) before build 39612, Acronis True Image 2021 (Windows) before build 39287

Affected (11)

4 products
True Image
Agent
Cyber Protect
Cyber Protect Home Office
Configuration A
6 vulnerable
Vulnerable SoftwareAffected Versions
Acronis
Version 2021
Version 2021 update_1
Version 2021 update_2
Version 2021 update_3
Version 2021 update_4
Version 2021 update_5
Configuration B
5 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before c21.06
Acronis
Version 15
Version 15 update1
Version 15 update2
All versions
Running on/withPlatform Versions
Microsoft
Windows
All versions

References (2)

Source: security@acronis.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.