CVE-2023-48677

HIGH

Acronis Cyber Protect Home Office < 40901 - Local Privilege Escalation via DLL Hijacking

Title source: llm
STIX 2.1

Description

Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Home Office (Windows) before build 40901, Acronis Cyber Protect Cloud Agent (Windows) before build 39378, Acronis Cyber Protect 16 (Windows) before build 39938, Acronis True Image OEM (Windows) before build 42575.

References (1)

Core 1
Core References

Scores

CVSS v3 7.8
EPSS 0.0004
EPSS Percentile 13.8%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Details

CWE
CWE-427
Status published
Products (5)
Acronis/Acronis Cyber Protect 16 unspecified - 39938
Acronis/Acronis Cyber Protect Cloud Agent unspecified - 39378
Acronis/Acronis Cyber Protect Home Office unspecified - 40901
Acronis/Acronis True Image OEM unspecified - 42575
acronis/cyber_protect_home_office < 40901
Published Dec 12, 2023
Tracked Since Feb 18, 2026