Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2768▼ 428 respecto a la semana anterior
Críticas / altas1324▼ 116 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)265▼ 243 respecto a la semana anterior
325 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Media (6.7) | 0.17% | — | Acronis Cyber Protect Cloud AgentAIAcronis Cyber Protect 16AI | 24/4/2025 | 17/6/2026 | Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 39904, Acronis Cyber Protect 16 (Windows) before build 39938. | |
| Aplazada | Media (6.3) | 0.13% | — | Acronis Cyber Protect Cloud AgentAI | 26/3/2025 | 17/6/2026 | Local privilege escalation due to a binary hijacking vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 39713. | |
| Aplazada | Media (5.5) | 0.19% | — | Acronis Backup Plugin FOR Cpanel AND WHMAIAcronis Backup Extension FOR PleskAI | 27/2/2025 | 17/6/2026 | Arbitrary file overwrite during home directory recovery due to improper symbolic link handling. The following products are affected: Acronis Backup plugin for cPanel & WHM (Linux) before build 1.8.4.866, Acronis Backup plugin for cPanel & WHM (Linux) before build 1.9.1.892, Acronis Backup extension for Plesk (Linux)… | |
| Aplazada | Media (6.6) | 0.19% | — | Acronis Cyber Protect Cloud AgentAI | 31/1/2025 | 17/6/2026 | Local privilege escalation due to unquoted search path vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 39378. | |
| Aplazada | Media (6.3) | 0.14% | — | Acronis Cyber Protect Cloud AgentAI | 31/1/2025 | 17/6/2026 | Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 39378. | |
| Aplazada | Media (6.3) | 0.14% | — | Acronis Cyber Protect Cloud AgentAI | 31/1/2025 | 17/6/2026 | Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 39378. | |
| Aplazada | Media (6.3) | 0.14% | — | Acronis Cyber Protect Cloud AgentAI | 31/1/2025 | 17/6/2026 | Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 39378. | |
| Aplazada | Media (6.3) | 0.14% | — | Acronis Cyber Protect Cloud AgentAI | 31/1/2025 | 17/6/2026 | Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 39378. | |
| Aplazada | Media (6.7) | 0.12% | — | Acronis Snap DeployAI | 28/1/2025 | 17/6/2026 | Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Snap Deploy (Windows) before build 4625. | |
| Aplazada | Media (5.5) | 0.11% | — | Acronis Cyber ProtectAI | 2/1/2025 | 17/6/2026 | Web installer integrity check used weak hash algorithm. The following products are affected: Acronis Cyber Protect 16 (Windows) before build 39169. | |
| Aplazada | Media (6.1) | 0.23% | — | Acronis Cyber Protect 16AI | 2/1/2025 | 17/6/2026 | Missing session invalidation after user deletion. The following products are affected: Acronis Cyber Protect 16 (Windows) before build 39169. | |
| Analizada | Alta (7.8) | 0.17% | — | Acronis Cyber Protect | 2/1/2025 | 17/6/2026 | Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect 16 (Windows) before build 39169. | |
| Aplazada | Media (4.4) | 0.17% | — | Acronis Cyber Protect 16AIAcronis Cyber Protect Cloud AgentAI | 2/1/2025 | 17/6/2026 | Local privilege escalation due to excessive permissions assigned to Tray Monitor service. The following products are affected: Acronis Cyber Protect 16 (Linux, macOS, Windows) before build 39169, Acronis Cyber Protect Cloud Agent (Linux, macOS, Windows) before build 35895. | |
| Analizada | Media (6.1) | 0.29% | — | Acronis Cyber Protect | 2/1/2025 | 17/6/2026 | Stored cross-site scripting (XSS) vulnerability due to missing origin validation in postMessage. The following products are affected: Acronis Cyber Protect 16 (Linux, Windows) before build 39169. | |
| Analizada | Alta (7.8) | 0.17% | — | Acronis Cyber Protect | 2/1/2025 | 17/6/2026 | Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect 16 (Windows) before build 39169. | |
| Aplazada | Media (4) | 0.18% | — | Acronis True ImageAIAcronis True Image OEMAI | 2/1/2025 | 17/6/2026 | Sensitive information disclosure due to missing authentication. The following products are affected: Acronis True Image (macOS) before build 41725, Acronis True Image (Windows) before build 41736, Acronis True Image OEM (macOS) before build 42571, Acronis True Image OEM (Windows) before build 42575. | |
| Aplazada | Media (5.5) | 0.15% | — | Acronis True ImageAIAcronis True Image OEMAI | 2/1/2025 | 17/6/2026 | Sensitive information disclosure due to insecure folder permissions. The following products are affected: Acronis True Image (Windows) before build 41736, Acronis True Image OEM (Windows) before build 42575. | |
| Aplazada | Baja (2.5) | 0.11% | — | Acronis Cyber Protect Cloud AgentAIAcronis Cyber ProtectAI | 23/12/2024 | 17/6/2026 | Weak algorithm used to sign RPM package. The following products are affected: Acronis Cyber Protect Cloud Agent (Linux) before build 39185, Acronis Cyber Protect 16 (Linux) before build 39938. | |
| Aplazada | Alta (7.1) | 5.8% | — | Acronis VspcAIAcronis Management AgentAI | 4/12/2024 | 17/6/2026 | From the VSPC management agent machine, under condition that the management agent is authorized on the server, it is possible to remove arbitrary files on the VSPC server machine. | |
| Aplazada | Baja (3.3) | 0.21% | — | Acronis Backup Plugin FOR Cpanel AND WHMAI | 11/11/2024 | 17/6/2026 | Sensitive information disclosure during file browsing due to improper symbolic link handling. The following products are affected: Acronis Backup plugin for cPanel & WHM (Linux) before build 1.8.3.818, Acronis Backup plugin for cPanel & WHM (Linux) before build 1.9.1.892. | |
| Aplazada | Media (5.5) | 0.20% | — | Acronis Backup Plugin FOR Cpanel AND WHMAIAcronis Backup Extension FOR PleskAIAcronis Backup Plugin FOR DirectadminAI | 11/11/2024 | 17/6/2026 | Arbitrary file overwrite during recovery due to improper symbolic link handling. The following products are affected: Acronis Backup plugin for cPanel & WHM (Linux) before build 1.8.3.818, Acronis Backup plugin for cPanel & WHM (Linux) before build 1.9.1.892, Acronis Backup extension for Plesk (Linux) before build… | |
| Aplazada | Media (4.3) | 0.39% | — | Bracketspace Advanced Cron ManagerAI | 1/11/2024 | 17/6/2026 | Missing Authorization vulnerability in BracketSpace Advanced Cron Manager allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Advanced Cron Manager – debug & control: from n/a through 2.5.9. | |
| Analizada | Media (4.8) | 0.23% | — | Acronis Cyber Files | 17/10/2024 | 17/6/2026 | Stored cross-site scripting (XSS) vulnerability on enrollment invitation page. The following products are affected: Acronis Cyber Files (Windows) before build 9.0.0x24. | |
| Analizada | Alta (7.3) | 0.14% | — | Acronis Cyber Files | 17/10/2024 | 17/6/2026 | Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Files (Windows) before build 9.0.0x24. | |
| Analizada | Alta (7.3) | 0.16% | — | Acronis Cyber Files | 17/10/2024 | 17/6/2026 | Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Files (Windows) before build 9.0.0x24. |