Acronis True Image 2019 update 1 through 2021 update 1 on macOS allows local privilege escalation due to an insecure XPC service configuration.
References
Link | Resource |
---|---|
http://packetstormsecurity.com/files/170246/Acronis-TrueImage-XPC-Privilege-Escalation.html | Third Party Advisory VDB Entry |
https://kb.acronis.com/content/68061 | Product |
https://www.acronis.com/en-us/blog/ | Product |
http://packetstormsecurity.com/files/170246/Acronis-TrueImage-XPC-Privilege-Escalation.html | Third Party Advisory VDB Entry |
https://kb.acronis.com/content/68061 | Product |
https://www.acronis.com/en-us/blog/ | Product |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 05:18
Type | Values Removed | Values Added |
---|---|---|
References | () http://packetstormsecurity.com/files/170246/Acronis-TrueImage-XPC-Privilege-Escalation.html - Third Party Advisory, VDB Entry | |
References | () https://kb.acronis.com/content/68061 - Product | |
References | () https://www.acronis.com/en-us/blog/ - Product |
03 Mar 2023, 15:13
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://kb.acronis.com/content/68061 - Product | |
References | (MISC) https://www.acronis.com/en-us/blog/ - Product | |
References | (MISC) http://packetstormsecurity.com/files/170246/Acronis-TrueImage-XPC-Privilege-Escalation.html - Third Party Advisory, VDB Entry |
15 Dec 2022, 19:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
12 Jul 2022, 17:42
Type | Values Removed | Values Added |
---|---|---|
CWE | NVD-CWE-noinfo |
28 Jul 2021, 01:54
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://www.acronis.com/en-us/blog/ - Release Notes, Vendor Advisory | |
References | (MISC) https://kb.acronis.com/content/68061 - Vendor Advisory | |
CWE | CWE-269 | |
CPE | cpe:2.3:a:acronis:true_image:2021:1:*:*:*:macos:*:* cpe:2.3:a:acronis:true_image:2020:*:*:*:*:macos:*:* cpe:2.3:a:acronis:true_image:2019:2:*:*:*:macos:*:* cpe:2.3:a:acronis:true_image:2019:3:*:*:*:macos:*:* cpe:2.3:a:acronis:true_image:2019:1:*:*:*:macos:*:* |
|
CVSS |
v2 : v3 : |
v2 : 4.6
v3 : 7.8 |
15 Jul 2021, 15:35
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2021-07-15 15:15
Updated : 2024-11-21 05:18
NVD link : CVE-2020-25736
Mitre link : CVE-2020-25736
CVE.ORG link : CVE-2020-25736
JSON object : View
Products Affected
acronis
- true_image
CWE