Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2768▼ 428 respecto a la semana anterior
Críticas / altas1324▼ 116 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)265▼ 243 respecto a la semana anterior
–

325 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AplazadaMedia (6.7)0.17%—Acronis Cyber Protect Cloud AgentAIAcronis Cyber Protect 16AI24/4/202517/6/2026
Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 39904, Acronis Cyber Protect 16 (Windows) before build 39938.
AplazadaMedia (6.3)0.13%—Acronis Cyber Protect Cloud AgentAI26/3/202517/6/2026
Local privilege escalation due to a binary hijacking vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 39713.
AplazadaMedia (5.5)0.19%—Acronis Backup Plugin FOR Cpanel AND WHMAIAcronis Backup Extension FOR PleskAI27/2/202517/6/2026
Arbitrary file overwrite during home directory recovery due to improper symbolic link handling. The following products are affected: Acronis Backup plugin for cPanel & WHM (Linux) before build 1.8.4.866, Acronis Backup plugin for cPanel & WHM (Linux) before build 1.9.1.892, Acronis Backup extension for Plesk (Linux)…
AplazadaMedia (6.6)0.19%—Acronis Cyber Protect Cloud AgentAI31/1/202517/6/2026
Local privilege escalation due to unquoted search path vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 39378.
AplazadaMedia (6.3)0.14%—Acronis Cyber Protect Cloud AgentAI31/1/202517/6/2026
Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 39378.
AplazadaMedia (6.3)0.14%—Acronis Cyber Protect Cloud AgentAI31/1/202517/6/2026
Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 39378.
AplazadaMedia (6.3)0.14%—Acronis Cyber Protect Cloud AgentAI31/1/202517/6/2026
Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 39378.
AplazadaMedia (6.3)0.14%—Acronis Cyber Protect Cloud AgentAI31/1/202517/6/2026
Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 39378.
AplazadaMedia (6.7)0.12%—Acronis Snap DeployAI28/1/202517/6/2026
Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Snap Deploy (Windows) before build 4625.
AplazadaMedia (5.5)0.11%—Acronis Cyber ProtectAI2/1/202517/6/2026
Web installer integrity check used weak hash algorithm. The following products are affected: Acronis Cyber Protect 16 (Windows) before build 39169.
AplazadaMedia (6.1)0.23%—Acronis Cyber Protect 16AI2/1/202517/6/2026
Missing session invalidation after user deletion. The following products are affected: Acronis Cyber Protect 16 (Windows) before build 39169.
AnalizadaAlta (7.8)0.17%—Acronis Cyber Protect2/1/202517/6/2026
Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect 16 (Windows) before build 39169.
AplazadaMedia (4.4)0.17%—Acronis Cyber Protect 16AIAcronis Cyber Protect Cloud AgentAI2/1/202517/6/2026
Local privilege escalation due to excessive permissions assigned to Tray Monitor service. The following products are affected: Acronis Cyber Protect 16 (Linux, macOS, Windows) before build 39169, Acronis Cyber Protect Cloud Agent (Linux, macOS, Windows) before build 35895.
AnalizadaMedia (6.1)0.29%—Acronis Cyber Protect2/1/202517/6/2026
Stored cross-site scripting (XSS) vulnerability due to missing origin validation in postMessage. The following products are affected: Acronis Cyber Protect 16 (Linux, Windows) before build 39169.
AnalizadaAlta (7.8)0.17%—Acronis Cyber Protect2/1/202517/6/2026
Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect 16 (Windows) before build 39169.
AplazadaMedia (4)0.18%—Acronis True ImageAIAcronis True Image OEMAI2/1/202517/6/2026
Sensitive information disclosure due to missing authentication. The following products are affected: Acronis True Image (macOS) before build 41725, Acronis True Image (Windows) before build 41736, Acronis True Image OEM (macOS) before build 42571, Acronis True Image OEM (Windows) before build 42575.
AplazadaMedia (5.5)0.15%—Acronis True ImageAIAcronis True Image OEMAI2/1/202517/6/2026
Sensitive information disclosure due to insecure folder permissions. The following products are affected: Acronis True Image (Windows) before build 41736, Acronis True Image OEM (Windows) before build 42575.
AplazadaBaja (2.5)0.11%—Acronis Cyber Protect Cloud AgentAIAcronis Cyber ProtectAI23/12/202417/6/2026
Weak algorithm used to sign RPM package. The following products are affected: Acronis Cyber Protect Cloud Agent (Linux) before build 39185, Acronis Cyber Protect 16 (Linux) before build 39938.
AplazadaAlta (7.1)5.8%—Acronis VspcAIAcronis Management AgentAI4/12/202417/6/2026
From the VSPC management agent machine, under condition that the management agent is authorized on the server, it is possible to remove arbitrary files on the VSPC server machine.
AplazadaBaja (3.3)0.21%—Acronis Backup Plugin FOR Cpanel AND WHMAI11/11/202417/6/2026
Sensitive information disclosure during file browsing due to improper symbolic link handling. The following products are affected: Acronis Backup plugin for cPanel & WHM (Linux) before build 1.8.3.818, Acronis Backup plugin for cPanel & WHM (Linux) before build 1.9.1.892.
AplazadaMedia (5.5)0.20%—Acronis Backup Plugin FOR Cpanel AND WHMAIAcronis Backup Extension FOR PleskAIAcronis Backup Plugin FOR DirectadminAI11/11/202417/6/2026
Arbitrary file overwrite during recovery due to improper symbolic link handling. The following products are affected: Acronis Backup plugin for cPanel & WHM (Linux) before build 1.8.3.818, Acronis Backup plugin for cPanel & WHM (Linux) before build 1.9.1.892, Acronis Backup extension for Plesk (Linux) before build…
AplazadaMedia (4.3)0.39%—Bracketspace Advanced Cron ManagerAI1/11/202417/6/2026
Missing Authorization vulnerability in BracketSpace Advanced Cron Manager allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Advanced Cron Manager – debug & control: from n/a through 2.5.9.
AnalizadaMedia (4.8)0.23%—Acronis Cyber Files17/10/202417/6/2026
Stored cross-site scripting (XSS) vulnerability on enrollment invitation page. The following products are affected: Acronis Cyber Files (Windows) before build 9.0.0x24.
AnalizadaAlta (7.3)0.14%—Acronis Cyber Files17/10/202417/6/2026
Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Files (Windows) before build 9.0.0x24.
AnalizadaAlta (7.3)0.16%—Acronis Cyber Files17/10/202417/6/2026
Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Files (Windows) before build 9.0.0x24.
Orbitaley — Vulnerabilidades