Sensitive information disclosure and manipulation due to insufficient authorization checks. The following products are affected: Acronis Cyber Protect 17 (Linux, macOS, Windows) before build 41186, Acronis Cyber Protect Cloud Agent (Linux, macOS, Windows) before build 41124.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://security-advisory.acronis.com/advisories/SEC-9405 |
|
History
Fri, 13 Mar 2026 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Acronis agent
Acronis cyber Protect Apple Apple macos Linux Linux linux Kernel Microsoft Microsoft windows |
|
| CPEs | cpe:2.3:a:acronis:agent:*:*:*:*:*:*:*:* cpe:2.3:a:acronis:cyber_protect:*:*:*:*:*:*:*:* cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* |
|
| Vendors & Products |
Acronis agent
Acronis cyber Protect Apple Apple macos Linux Linux linux Kernel Microsoft Microsoft windows |
|
| Metrics |
cvssV3_1
|
Fri, 06 Mar 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 06 Mar 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Acronis
Acronis acronis Cyber Protect 17 Acronis cyber Protect Cloud Agent |
|
| Vendors & Products |
Acronis
Acronis acronis Cyber Protect 17 Acronis cyber Protect Cloud Agent |
Fri, 06 Mar 2026 00:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Sensitive information disclosure and manipulation due to insufficient authorization checks. The following products are affected: Acronis Cyber Protect 17 (Linux, macOS, Windows) before build 41186, Acronis Cyber Protect Cloud Agent (Linux, macOS, Windows) before build 41124. | |
| Weaknesses | CWE-862 | |
| References |
| |
| Metrics |
cvssV3_0
|
Status: PUBLISHED
Assigner: Acronis
Published: 2026-03-05T23:46:27.697Z
Updated: 2026-03-06T19:34:47.346Z
Reserved: 2025-10-15T13:28:33.632Z
Link: CVE-2025-11791
Updated: 2026-03-06T19:29:57.893Z
Status : Analyzed
Published: 2026-03-06T00:16:09.617
Modified: 2026-03-13T16:33:56.090
Link: CVE-2025-11791
No data.