8.1

CVE-2021-32581

Acronis True Image prior to 2021 Update 4 for Windows, Acronis True Image prior to 2021 Update 5 for Mac, Acronis Agent prior to build 26653, Acronis Cyber Protect prior to build 27009 did not implement SSL certificate validation.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
AcronisCyber Protect Cloud Version < 15.0.27009
AcronisCyber Protection Agent Version < 15.0.26653
AcronisTrue Image Version2021 Update- SwPlatformmacos
AcronisTrue Image Version2021 Update- SwPlatformwindows
AcronisTrue Image Version2021 Updateupdate_1 SwPlatformmacos
AcronisTrue Image Version2021 Updateupdate_1 SwPlatformwindows
AcronisTrue Image Version2021 Updateupdate_2 SwPlatformmacos
AcronisTrue Image Version2021 Updateupdate_2 SwPlatformwindows
AcronisTrue Image Version2021 Updateupdate_3 SwPlatformmacos
AcronisTrue Image Version2021 Updateupdate_3 SwPlatformwindows
AcronisTrue Image Version2021 Updateupdate_4 SwPlatformmacos
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.16% 0.329
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 8.1 2.8 5.2
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N
nvd@nist.gov 5.8 8.6 4.9
AV:N/AC:M/Au:N/C:P/I:P/A:N
CWE-295 Improper Certificate Validation

The product does not validate, or incorrectly validates, a certificate.