Acronis Cyber Protect
cpe:2.3:a:acronis:cyber_protect:*:*:*:*:windows:*:*
- < 39169
A vulnerability exists in Acronis Cyber Protect 16 for Windows, prior to build 39169, due to missing session invalidation after user deletion. This flaw could potentially be exploited to access user sessions that should have been terminated.
Exploitation of this vulnerability could lead to unauthorized access to user sessions, allowing for actions to be performed on behalf of the deleted user.
Users can update to Acronis Cyber Protect 16 Update 3 to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.