Vulnerabilities > Acronis > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-09-27 | CVE-2023-44160 | Cross-Site Request Forgery (CSRF) vulnerability in Acronis Cyber Protect 15 Sensitive information manipulation due to cross-site request forgery. | 6.5 |
2023-09-27 | CVE-2023-44161 | Cross-Site Request Forgery (CSRF) vulnerability in Acronis Cyber Protect 15 Sensitive information manipulation due to cross-site request forgery. | 6.5 |
2023-09-27 | CVE-2023-44205 | Authorization Bypass Through User-Controlled Key vulnerability in Acronis Cyber Protect 15 Sensitive information disclosure due to improper authorization. | 5.3 |
2023-09-27 | CVE-2023-44207 | Cross-site Scripting vulnerability in Acronis Cyber Protect 15 Stored cross-site scripting (XSS) vulnerability in protection plan name. | 5.4 |
2023-08-31 | CVE-2023-41750 | Missing Authorization vulnerability in Acronis Agent Sensitive information disclosure due to missing authorization. | 5.5 |
2023-08-31 | CVE-2023-41751 | Improper Authentication vulnerability in Acronis Agent Sensitive information disclosure due to improper token expiration validation. | 5.5 |
2023-08-31 | CVE-2023-4688 | Information Exposure Through Log Files vulnerability in Acronis Agent Sensitive information leak through log files. | 5.5 |
2023-08-31 | CVE-2023-41745 | Exposure of Resource to Wrong Sphere vulnerability in Acronis Agent and Cyber Protect Sensitive information disclosure due to excessive collection of system information. | 5.5 |
2023-08-31 | CVE-2023-41747 | Path Traversal vulnerability in Acronis Cloud Manager Sensitive information disclosure due to unauthenticated path traversal. | 6.5 |
2023-05-18 | CVE-2023-2782 | Incorrect Authorization vulnerability in Acronis Cyber Infrastructure Sensitive information disclosure due to improper authorization. | 5.5 |