Skip to main content

Vendor/product archive

acronis / true_image CVEs

Beta · best-effort

25 CVEs tagged to acronis / true_image0 Critical, 19 High, 6 Medium, 0 Low, 0 Unrated.

CVE-2026-33271

Published Apr 2, 2026

Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis True Image (Windows) before build 42902.

CVSS 6.7 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-28728

Published Apr 2, 2026

Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis True Image (Windows) before build 42902.

CVSS 6.7 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-27774

Published Apr 2, 2026

Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis True Image (Windows) before build 42902.

CVSS 6.7 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2021-32580

Published Aug 5, 2021

Acronis True Image prior to 2021 Update 4 for Windows allowed local privilege escalation due to DLL hijacking.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-32579

Published Aug 5, 2021

Acronis True Image prior to 2021 Update 4 for Windows and Acronis True Image prior to 2021 Update 5 for macOS allowed an unauthenticated attacker (who has a local code execution a…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-32578

Published Aug 5, 2021

Acronis True Image prior to 2021 Update 4 for Windows allowed local privilege escalation due to improper soft link handling (issue 2 of 2).

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-32577

Published Aug 5, 2021

Acronis True Image prior to 2021 Update 5 for Windows allowed local privilege escalation due to insecure folder permissions.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-32576

Published Aug 5, 2021

Acronis True Image prior to 2021 Update 4 for Windows allowed local privilege escalation due to improper soft link handling (issue 1 of 2).

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-25736

Published Jul 15, 2021

Acronis True Image 2019 update 1 through 2021 update 1 on macOS allows local privilege escalation due to an insecure XPC service configuration.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-25593

Published Jul 15, 2021

Acronis True Image through 2021 on macOS allows local privilege escalation from admin to root due to insecure folder permissions.

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-15495

Published Jul 15, 2021

Acronis True Image 2019 update 1 through 2020 on macOS allows local privilege escalation due to an insecure XPC service configuration.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-15496

Published Jul 15, 2021

Acronis True Image for Mac before 2021 Update 4 allowed local privilege escalation due to insecure folder permissions.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-35145

Published Jan 29, 2021

Acronis True Image for Windows prior to 2021 Update 3 allowed local privilege escalation due to a DLL hijacking vulnerability in multiple components, aka an Untrusted Search Path…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-10140

Published Oct 21, 2020

Acronis True Image 2021 fails to properly set ACLs of the C:\ProgramData\Acronis directory. Because some privileged processes are executed from the C:\ProgramData\Acronis, an unpr…

CVSS 7.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2020-10139

Published Oct 21, 2020

Acronis True Image 2021 includes an OpenSSL component that specifies an OPENSSLDIR variable as a subdirectory within C:\jenkins_agent\. Acronis True Image contains a privileged se…

CVSS 7.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2017-3219

Published Jun 21, 2017

Acronis True Image up to and including version 2017 Build 8053 performs software updates using HTTP. Downloaded updates are only verified using a server-provided MD5 hash.

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2008-1279

Published Mar 10, 2008

Acronis True Image Group Server 1.5.19.191 and earlier, included in Acronis True Image Enterprise Server 9.5.0.8072 and the other True Image packages, allows remote attackers to c…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-25 of 25 CVEsPage 1 of 1