VYPR

Cyber Protect

by Acronis

CVEs (113)

  • CVE-2026-28716MedMar 6, 2026
    risk 0.29cvss 4.4epss 0.00

    Information disclosure and manipulation due to improper authorization checks. The following products are affected: Acronis Cyber Protect 17 (Linux, Windows) before build 41186.

  • CVE-2025-30413MedMar 6, 2026
    risk 0.29cvss 4.4epss 0.00

    Credentials are not deleted from Acronis Agent after plan revocation. The following products are affected: Acronis Cyber Protect Cloud Agent (Linux, macOS, Windows) before build 40497, Acronis Cyber Protect 17 (Linux, macOS, Windows) before build 41186.

  • CVE-2026-28726MedMar 6, 2026
    risk 0.28cvss 4.3epss 0.00

    Sensitive information disclosure due to improper access control. The following products are affected: Acronis Cyber Protect 17 (Linux, Windows) before build 41186.

  • CVE-2026-28724MedMar 6, 2026
    risk 0.28cvss 4.3epss 0.00

    Unauthorized data access due to insufficient access control validation. The following products are affected: Acronis Cyber Protect 17 (Linux, Windows) before build 41186.

  • CVE-2026-28723MedMar 6, 2026
    risk 0.28cvss 4.3epss 0.00

    Unauthorized report deletion due to insufficient access control. The following products are affected: Acronis Cyber Protect 17 (Linux, Windows) before build 41186.

  • CVE-2026-28720MedMar 6, 2026
    risk 0.28cvss 4.3epss 0.00

    Unauthorized modification of settings due to insufficient authorization checks. The following products are affected: Acronis Cyber Protect 17 (Linux, Windows) before build 41186.

  • CVE-2026-28719MedMar 6, 2026
    risk 0.28cvss 4.3epss 0.00

    Unauthorized resource manipulation due to improper authorization checks. The following products are affected: Acronis Cyber Protect 17 (Linux, Windows) before build 41186.

  • CVE-2026-28709MedMar 6, 2026
    risk 0.28cvss 4.3epss 0.00

    Unauthorized resource manipulation due to improper authorization checks. The following products are affected: Acronis Cyber Protect 17 (Linux, Windows) before build 41186.

  • CVE-2025-48962MedJun 4, 2025
    risk 0.28cvss 4.3epss 0.00

    Sensitive information disclosure due to SSRF. The following products are affected: Acronis Cyber Protect 16 (Windows, Linux) before build 39938.

  • CVE-2024-49384MedOct 15, 2024
    risk 0.28cvss 4.3epss 0.00

    Excessive attack surface in acep-collector service due to binding to an unrestricted IP address. The following products are affected: Acronis Cyber Protect 16 (Linux, Windows) before build 38690.

  • CVE-2024-49383MedOct 15, 2024
    risk 0.28cvss 4.3epss 0.00

    Excessive attack surface in acep-importer service due to binding to an unrestricted IP address. The following products are affected: Acronis Cyber Protect 16 (Linux, Windows) before build 38690.

  • CVE-2024-49382MedOct 15, 2024
    risk 0.28cvss 4.3epss 0.00

    Excessive attack surface in archive-server service due to binding to an unrestricted IP address. The following products are affected: Acronis Cyber Protect 16 (Linux, Windows) before build 38690.

  • CVE-2024-55539LowDec 23, 2024
    risk 0.16cvss 2.5epss 0.00

    Weak algorithm used to sign RPM package. The following products are affected: Acronis Cyber Protect Cloud Agent (Linux) before build 39185, Acronis Cyber Protect 16 (Linux) before build 39938.

Page 6 of 6