CVE-2021-38086

Acronis Cyber Protect 15 for Windows prior to build 27009 and Acronis Agent for Windows prior to build 26226 allowed local privilege escalation via DLL hijacking.
References
Link Resource
https://kb.acronis.com/content/68564 Vendor Advisory
https://kb.acronis.com/content/68564 Vendor Advisory
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:acronis:cyber_protect:*:*:*:*:*:*:*:*
cpe:2.3:a:acronis:cyber_protect:15:-:*:*:*:*:*:*
cpe:2.3:a:acronis:cyber_protect:15:update1:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

21 Nov 2024, 06:16

Type Values Removed Values Added
References () https://kb.acronis.com/content/68564 - Vendor Advisory () https://kb.acronis.com/content/68564 - Vendor Advisory

Information

Published : 2021-08-12 14:15

Updated : 2024-11-21 06:16


NVD link : CVE-2021-38086

Mitre link : CVE-2021-38086

CVE.ORG link : CVE-2021-38086


JSON object : View

Products Affected

microsoft

  • windows

acronis

  • cyber_protect
CWE
CWE-427

Uncontrolled Search Path Element