7.3
CVE-2026-28722 - Improper Symbolic Link Handling Enables Local Privilege Escalation in Acronis Cyber Protect 17
Local privilege escalation due to improper soft link handling. The following products are affected: Acronis Cyber Protect 17 (Windows) before build 41186.
7.3
CVE-2026-28721 - Local Privilege Escalation through Improper Soft Link Handling in Acronis Cyber Protect 17
Local privilege escalation due to improper soft link handling. The following products are affected: Acronis Cyber Protect 17 (Windows) before build 41186.
4.3
CVE-2026-28720 - Insufficient Authorization Checks Allow Unauthorized Settings Modification in Acronis Cyber Protectβ¦
Unauthorized modification of settings due to insufficient authorization checks. The following products are affected: Acronis Cyber Protect 17 (Linux, Windows) before build 41186.
4.3
CVE-2026-28719 - Improper Authorization Enables Unauthorized Resource Manipulation in Acronis Cyber Protect
Unauthorized resource manipulation due to improper authorization checks. The following products are affected: Acronis Cyber Protect 17 (Linux, Windows) before build 41186.
7.5
CVE-2026-28718 - DoS via Unvalidated Authentication Logging in Acronis Cyber Protect 17
Denial of service due to insufficient input validation in authentication logging. The following products are affected: Acronis Cyber Protect 17 (Linux, Windows) before build 41186.
5
CVE-2026-28717 - Local Privilege Escalation via Improper Directory Permissions in Acronis Cyber Protect 17
Local privilege escalation due to improper directory permissions. The following products are affected: Acronis Cyber Protect 17 (Windows) before build 41186.
4.4
CVE-2026-28716 - Improper Authorization Checks in Acronis Cyber Protect 17 Allow Information Disclosure and Manipulaβ¦
Information disclosure and manipulation due to improper authorization checks. The following products are affected: Acronis Cyber Protect 17 (Linux, Windows) before build 41186.
6.5
CVE-2026-28715 - Sensitive Data Leak from Authorization Flaw in Acronis Cyber Protect
Sensitive information disclosure due to improper authorization checks. The following products are affected: Acronis Cyber Protect 17 (Linux, Windows) before build 41186.
4.8
CVE-2026-28714 - Unnecessary Transmission of Sensitive Cryptographic Material in Acronis Cyber Protect 17
Unnecessary transmission of sensitive cryptographic material. The following products are affected: Acronis Cyber Protect 17 (Linux, Windows) before build 41186.
7.1
CVE-2026-28713 - Default Credentials in Acronis Virtual Appliance Enable Local Privilege Escalation
Default credentials set for local privileged user in Virtual Appliance. The following products are affected: Acronis Cyber Protect Cloud Agent (VMware) before build 36943, Acronis Cyber Protect 17 (VMware) before build 41186.