Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In May 2023
Sensitive information disclosure due to improper authorization. The following products are affected: Acronis Cyber Infrastructure (ACI) before build 5.3.1-38.
CVSS Score
5.5
EPSS Score
0.001
Published
2023-05-18
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in TheGuideX User IP and Location plugin <= 2.2 versions.
CVSS Score
6.5
EPSS Score
0.001
Published
2023-05-18
Sensitive information disclosure and manipulation due to improper authorization. The following products are affected: Acronis Agent (Linux, macOS, Windows) before build 28610, Acronis Cyber Protect 15 (Linux, macOS, Windows) before build 30984.
CVSS Score
5.4
EPSS Score
0.001
Published
2023-05-18
Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Agent (Windows) before build 30430, Acronis Cyber Protect 15 (Windows) before build 30984.
CVSS Score
7.3
EPSS Score
0.0
Published
2023-05-18
TLS/SSL weak cipher suites enabled. The following products are affected: Acronis Cyber Protect 15 (Windows, Linux) before build 30984.
CVSS Score
5.3
EPSS Score
0.001
Published
2023-05-18
Sensitive information disclosure and manipulation due to improper certification validation. The following products are affected: Acronis Agent (Windows) before build 29633, Acronis Cyber Protect 15 (Windows) before build 30984.
CVSS Score
4.2
EPSS Score
0.001
Published
2023-05-18
Sensitive information disclosure and manipulation due to improper certification validation. The following products are affected: Acronis Agent (Windows, macOS, Linux) before build 29633, Acronis Cyber Protect 15 (Windows, macOS, Linux) before build 30984.
CVSS Score
4.2
EPSS Score
0.001
Published
2023-05-18
Sensitive information disclosure due to insecure registry permissions. The following products are affected: Acronis Agent (Windows) before build 30025, Acronis Cyber Protect 15 (Windows) before build 30984.
CVSS Score
3.8
EPSS Score
0.001
Published
2023-05-18
Local privilege escalation due to unrestricted loading of unsigned libraries. The following products are affected: Acronis Cyber Protect Home Office (Windows) before build 40208.
CVSS Score
7.8
EPSS Score
0.0
Published
2023-05-18
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Haoqisir Baidu Tongji generator plugin <= 1.0.2 versions.
CVSS Score
5.9
EPSS Score
0.001
Published
2023-05-18


Contact Us

Shodan ® - All rights reserved