Arbitrary file overwrite during recovery due to improper symbolic link handling. The following products are affected: Acronis Backup plugin for cPanel & WHM (Linux) before build 818, Acronis Backup extension for Plesk (Linux) before build 599, Acronis Backup plugin for DirectAdmin (Linux) before build 181.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://security-advisory.acronis.com/advisories/SEC-7592 |
History
Mon, 11 Nov 2024 21:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Arbitrary file overwrite during recovery due to improper soft link handling. The following products are affected: Acronis Backup plugin for cPanel & WHM (Linux) before build 818, Acronis Backup extension for Plesk (Linux) before build 599, Acronis Backup plugin for DirectAdmin (Linux) before build 181. | Arbitrary file overwrite during recovery due to improper symbolic link handling. The following products are affected: Acronis Backup plugin for cPanel & WHM (Linux) before build 818, Acronis Backup extension for Plesk (Linux) before build 599, Acronis Backup plugin for DirectAdmin (Linux) before build 181. |
Mon, 11 Nov 2024 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 11 Nov 2024 13:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Arbitrary file overwrite during recovery due to improper soft link handling. The following products are affected: Acronis Backup plugin for cPanel & WHM (Linux) before build 818, Acronis Backup extension for Plesk (Linux) before build 599, Acronis Backup plugin for DirectAdmin (Linux) before build 181. | |
Weaknesses | CWE-61 | |
References |
| |
Metrics |
cvssV3_0
|
MITRE
Status: PUBLISHED
Assigner: Acronis
Published: 2024-11-11T13:20:33.777Z
Updated: 2024-11-11T21:22:25.084Z
Reserved: 2024-04-29T15:33:32.845Z
Link: CVE-2024-34014
Vulnrichment
Updated: 2024-11-11T15:57:24.457Z
NVD
Status : Awaiting Analysis
Published: 2024-11-11T14:15:14.693
Modified: 2024-11-12T13:55:21.227
Link: CVE-2024-34014
Redhat
No data.