Sensitive information disclosure and manipulation due to missing authorization. The following products are affected: Acronis Agent (Linux, macOS, Windows) before build 29258.
The product does not perform an authorization check when an actor attempts to access a resource or perform an action.
Link | Tags |
---|---|
https://security-advisory.acronis.com/advisories/SEC-2159 | patch vendor advisory |
https://security-advisory.acronis.com/SEC-5528 | patch vendor advisory related |