Local privilege escalation due to insecure driver communication port permissions. The following products are affected: Acronis Cyber Protect Home Office (Windows) before build 40278, Acronis Cyber Protect Cloud Agent (Windows) before build 31637, Acronis Cyber Protect 15 (Windows) before build 35979, Acronis True Image OEM (Windows) before build 42575.
References
| Link | Resource |
|---|---|
| https://security-advisory.acronis.com/SEC-4858 | Release Notes Vendor Advisory |
| https://security-advisory.acronis.com/advisories/SEC-5487 | Release Notes Vendor Advisory |
| https://security-advisory.acronis.com/SEC-4858 | Release Notes Vendor Advisory |
| https://security-advisory.acronis.com/advisories/SEC-5487 | Release Notes Vendor Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
History
10 Apr 2026, 14:16
| Type | Values Removed | Values Added |
|---|---|---|
| Summary | (en) Local privilege escalation due to insecure driver communication port permissions. The following products are affected: Acronis Cyber Protect Home Office (Windows) before build 40278, Acronis Cyber Protect Cloud Agent (Windows) before build 31637, Acronis Cyber Protect 15 (Windows) before build 35979, Acronis True Image OEM (Windows) before build 42575. |
21 Nov 2024, 08:21
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://security-advisory.acronis.com/SEC-4858 - Release Notes, Vendor Advisory | |
| References | () https://security-advisory.acronis.com/advisories/SEC-5487 - Release Notes, Vendor Advisory |
06 Sep 2023, 00:17
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:acronis:cyber_protect_home_office:-:*:*:*:*:*:*:* cpe:2.3:a:acronis:cyber_protect_home_office:40107:*:*:*:*:*:*:* cpe:2.3:a:acronis:cyber_protect_home_office:40173:*:*:*:*:*:*:* cpe:2.3:a:acronis:agent:*:*:*:*:*:*:*:* cpe:2.3:a:acronis:cyber_protect_home_office:39900:*:*:*:*:*:*:* cpe:2.3:a:acronis:cyber_protect:15:update1:*:*:*:*:*:* cpe:2.3:a:acronis:cyber_protect:15:-:*:*:*:*:*:* cpe:2.3:a:acronis:cyber_protect:15:update3:*:*:*:*:*:* cpe:2.3:a:acronis:cyber_protect:15:update2:*:*:*:*:*:* cpe:2.3:a:acronis:cyber_protect_home_office:40208:*:*:*:*:*:*:* cpe:2.3:a:acronis:cyber_protect:15:update4:*:*:*:*:*:* cpe:2.3:a:acronis:cyber_protect:15:update5:*:*:*:*:*:* cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* |
|
| CWE | CWE-269 | |
| References | (MISC) https://security-advisory.acronis.com/SEC-4858 - Release Notes, Vendor Advisory | |
| References | (MISC) https://security-advisory.acronis.com/advisories/SEC-5487 - Release Notes, Vendor Advisory | |
| First Time |
Acronis cyber Protect Home Office
Microsoft windows Acronis cyber Protect Acronis Microsoft Acronis agent |
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
31 Aug 2023, 20:15
| Type | Values Removed | Values Added |
|---|---|---|
| Summary | Local privilege escalation due to insecure driver communication port permissions. The following products are affected: Acronis Cyber Protect Home Office (Windows) before build 40278, Acronis Agent (Windows) before build 31637, Acronis Cyber Protect 15 (Windows) before build 35979. |
31 Aug 2023, 17:25
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2023-08-31 16:15
Updated : 2026-04-10 14:16
NVD link : CVE-2023-41743
Mitre link : CVE-2023-41743
CVE.ORG link : CVE-2023-41743
JSON object : View
Products Affected
acronis
- cyber_protect_home_office
- cyber_protect
- agent
microsoft
- windows
CWE
CWE-269
Improper Privilege Management
