Vulnerability Details CVE-2022-3405
Code execution and sensitive information disclosure due to excessive privileges assigned to Acronis Agent. The following products are affected: Acronis Cyber Protect 15 (Windows, Linux) before build 29486, Acronis Cyber Backup 12.5 (Windows, Linux) before build 16545.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.296
EPSS Ranking 96.4%
CVSS Severity
CVSS v3 Score 9.3
Products affected by CVE-2022-3405
-
cpe:2.3:a:acronis:cyber_backup:12.5
-
cpe:2.3:a:acronis:cyber_protect:15
-
cpe:2.3:o:linux:linux_kernel:-
-
cpe:2.3:o:microsoft:windows:-