Sensitive information disclosure and manipulation due to missing authorization. The following products are affected: Acronis Agent (Linux, macOS, Windows) before build 31477.
The product does not perform an authorization check when an actor attempts to access a resource or perform an action.
Link | Tags |
---|---|
https://security-advisory.acronis.com/advisories/SEC-5528 | vendor advisory |
https://security-advisory.acronis.com/SEC-2159 | vendor advisory related |