High - CVE-2024-45273 - An unauthenticated local attacker can decrypt...
An unauthenticated local attacker can decrypt the devices config file and therefore compromise the device due to a weak implementation of the encryption used.
NA - CVE-2024-45275 - The devices contain two hard coded user...
The devices contain two hard coded user accounts with hardcoded passwords that allow an unauthenticated remote attacker for full control of the affected devices.
NA - CVE-2024-47674 - In the Linux kernel, the following...
In the Linux kernel, the following vulnerability has been resolved: mm: avoid leaving partial pfn mappings around in error case As Jann points out, PFN mappings are special, because unlike...
NA - CVE-2024-49382 - Excessive attack surface in archive-server...
Excessive attack surface in archive-server service due to binding to an unrestricted IP address. The following products are affected: Acronis Cyber Protect 16 (Linux, Windows) before build 38690.
NA - CVE-2024-49383 - Excessive attack surface in acep-importer...
Excessive attack surface in acep-importer service due to binding to an unrestricted IP address. The following products are affected: Acronis Cyber Protect 16 (Linux, Windows) before build 38690.
NA - CVE-2024-49384 - Excessive attack surface in acep-collector...
Excessive attack surface in acep-collector service due to binding to an unrestricted IP address. The following products are affected: Acronis Cyber Protect 16 (Linux, Windows) before build 38690.
NA - CVE-2024-49387 - Cleartext transmission of sensitive information...
Cleartext transmission of sensitive information in acep-collector service. The following products are affected: Acronis Cyber Protect 16 (Linux, Windows) before build 38690.
NA - CVE-2024-49388 - Sensitive information manipulation due to...
Sensitive information manipulation due to improper authorization. The following products are affected: Acronis Cyber Protect 16 (Linux, Windows) before build 38690.