Acronis True Image 2019 update 1 through 2021 update 1 on macOS allows local privilege escalation due to an insecure XPC service configuration.
References
| Link | Resource |
|---|---|
| http://packetstormsecurity.com/files/170246/Acronis-TrueImage-XPC-Privilege-Escalation.html | Third Party Advisory VDB Entry |
| https://kb.acronis.com/content/68061 | Product |
| https://www.acronis.com/en-us/blog/ | Product |
| http://packetstormsecurity.com/files/170246/Acronis-TrueImage-XPC-Privilege-Escalation.html | Third Party Advisory VDB Entry |
| https://kb.acronis.com/content/68061 | Product |
| https://www.acronis.com/en-us/blog/ | Product |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 05:18
| Type | Values Removed | Values Added |
|---|---|---|
| References | () http://packetstormsecurity.com/files/170246/Acronis-TrueImage-XPC-Privilege-Escalation.html - Third Party Advisory, VDB Entry | |
| References | () https://kb.acronis.com/content/68061 - Product | |
| References | () https://www.acronis.com/en-us/blog/ - Product |
03 Mar 2023, 15:13
| Type | Values Removed | Values Added |
|---|---|---|
| References | (MISC) https://kb.acronis.com/content/68061 - Product | |
| References | (MISC) https://www.acronis.com/en-us/blog/ - Product | |
| References | (MISC) http://packetstormsecurity.com/files/170246/Acronis-TrueImage-XPC-Privilege-Escalation.html - Third Party Advisory, VDB Entry |
15 Dec 2022, 19:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
12 Jul 2022, 17:42
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | NVD-CWE-noinfo |
28 Jul 2021, 01:54
| Type | Values Removed | Values Added |
|---|---|---|
| References | (MISC) https://www.acronis.com/en-us/blog/ - Release Notes, Vendor Advisory | |
| References | (MISC) https://kb.acronis.com/content/68061 - Vendor Advisory | |
| CWE | CWE-269 | |
| CPE | cpe:2.3:a:acronis:true_image:2021:1:*:*:*:macos:*:* cpe:2.3:a:acronis:true_image:2020:*:*:*:*:macos:*:* cpe:2.3:a:acronis:true_image:2019:2:*:*:*:macos:*:* cpe:2.3:a:acronis:true_image:2019:3:*:*:*:macos:*:* cpe:2.3:a:acronis:true_image:2019:1:*:*:*:macos:*:* |
|
| CVSS |
v2 : v3 : |
v2 : 4.6
v3 : 7.8 |
15 Jul 2021, 15:35
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2021-07-15 15:15
Updated : 2024-11-21 05:18
NVD link : CVE-2020-25736
Mitre link : CVE-2020-25736
CVE.ORG link : CVE-2020-25736
JSON object : View
Products Affected
acronis
- true_image
CWE
