Vulnerabilities > CVE-2023-41742 - Exposure of Resource to Wrong Sphere vulnerability in Acronis Agent and Cyber Protect

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
NONE
network
low complexity
acronis
CWE-668

Summary

Excessive attack surface due to binding to an unrestricted IP address. The following products are affected: Acronis Agent (Linux, macOS, Windows) before build 30430, Acronis Cyber Protect 15 (Linux, macOS, Windows) before build 35979.

Common Weakness Enumeration (CWE)