CVE-2026-28713
Received Received - Intake
Default Credentials in Acronis Cyber Protect VMware Agents

Publication date: 2026-03-06

Last updated on: 2026-03-13

Assigner: Acronis International GmbH

Description
Default credentials set for local privileged user in Virtual Appliance. The following products are affected: Acronis Cyber Protect Cloud Agent (VMware) before build 36943, Acronis Cyber Protect 17 (VMware) before build 41186.
CVSS Scores
EPSS Scores
Probability:
Percentile:
Meta Information
Published
2026-03-06
Last Modified
2026-03-13
Generated
2026-06-16
AI Q&A
2026-03-06
EPSS Evaluated
2026-06-14
NVD
EUVD
Affected Vendors & Products
Showing 2 associated CPEs
Vendor Product Version / Range
acronis agent to c23.12 (exc)
acronis cyber_protect to 17.0.41186 (exc)
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-1392 The product uses default credentials (such as passwords or cryptographic keys) for potentially critical functionality.
Attack-Flow Graph
AI Quick Actions
Instant insights powered by AI
Executive Summary

This vulnerability involves default credentials being set for a local privileged user in a Virtual Appliance. Specifically, it affects certain versions of Acronis Cyber Protect Cloud Agent (VMware) before build 36943 and Acronis Cyber Protect 17 (VMware) before build 41186.

Impact Analysis

The presence of default credentials for a local privileged user can allow unauthorized attackers to gain privileged access to the affected systems. This can lead to a high impact on confidentiality and integrity, and a low impact on availability, as indicated by the CVSS score.

Compliance Impact

I don't know

Detection Guidance

I don't know

Mitigation Strategies

I don't know

Chat Assistant
Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-28713. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70
EPSS Chart