CVE-2025-48961
BaseFortify
Publication date: 2025-06-04
Last updated on: 2025-06-04
Assigner: Acronis International GmbH
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-732 | The product specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability is a local privilege escalation issue caused by insecure folder permissions in Acronis Cyber Protect 16 (Windows) versions before build 39938. It allows a user with limited privileges to potentially gain higher-level access on the affected system.
How can this vulnerability impact me? :
An attacker exploiting this vulnerability could escalate their privileges on the affected system, potentially gaining full control. This could lead to unauthorized access, modification, or deletion of sensitive data, disruption of services, or further compromise of the system.