Vulnerability Details CVE-2024-55541
Stored cross-site scripting (XSS) vulnerability due to missing origin validation in postMessage. The following products are affected: Acronis Cyber Protect 16 (Linux, Windows) before build 39169.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 22.9%
CVSS Severity
CVSS v3 Score 3.1
Products affected by CVE-2024-55541
-
cpe:2.3:a:acronis:cyber_protect:-
-
cpe:2.3:a:acronis:cyber_protect:15
-
cpe:2.3:a:acronis:cyber_protect:16
-
cpe:2.3:o:linux:linux_kernel:-
-
cpe:2.3:o:microsoft:windows:-