CVE-2021-38086

HIGH

Acronis Cyber Protect <15 - Privilege Escalation

Title source: llm
STIX 2.1

Description

Acronis Cyber Protect 15 for Windows prior to build 27009 and Acronis Agent for Windows prior to build 26226 allowed local privilege escalation via DLL hijacking.

References (1)

Core 1
Core References
Vendor Advisory x_refsource_misc
https://kb.acronis.com/content/68564

Scores

CVSS v3 7.8
EPSS 0.0005
EPSS Percentile 16.9%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Details

CWE
CWE-427
Status published
Products (2)
acronis/cyber_protect 15 (2 CPE variants)
acronis/cyber_protect < 15
Published Aug 12, 2021
Tracked Since Feb 18, 2026