Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 38235, Acronis Cyber Protect 16 (Windows) before build 39169.
Advisories
Source ID Title
EUVD EUVD EUVD-2024-49635 Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 38235, Acronis Cyber Protect 16 (Windows) before build 39169.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Sun, 13 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.00025}

epss

{'score': 0.00026}


Thu, 02 Jan 2025 15:30:00 +0000

Type Values Removed Values Added
Description Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 38235. Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 38235, Acronis Cyber Protect 16 (Windows) before build 39169.

Tue, 17 Sep 2024 16:30:00 +0000

Type Values Removed Values Added
First Time appeared Acronis
Acronis cyber Protect Cloud Agent
CPEs cpe:2.3:a:acronis:cyber_protect_cloud_agent:-:*:*:*:*:*:*:*
Vendors & Products Acronis
Acronis cyber Protect Cloud Agent
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Mon, 16 Sep 2024 20:00:00 +0000

Type Values Removed Values Added
Description Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 38235.
Weaknesses CWE-427
References
Metrics cvssV3_0

{'score': 6.7, 'vector': 'CVSS:3.0/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Acronis

Published:

Updated: 2025-01-02T15:25:36.040Z

Reserved: 2024-09-12T20:45:42.402Z

Link: CVE-2024-8766

cve-icon Vulnrichment

Updated: 2024-09-17T15:53:50.267Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-09-16T20:15:47.600

Modified: 2025-01-02T16:15:08.817

Link: CVE-2024-8766

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.