CVE-2023-41743: Acronis Agent

High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.

Local privilege escalation due to insecure driver communication port permissions. The following products are affected: Acronis Cyber Protect Home Office (Windows) before build 40278, Acronis Cyber Protect Cloud Agent (Windows) before build 31637, Acronis Cyber Protect 15 (Windows) before build 35979, Acronis True Image OEM (Windows) before build 42575.

Affected products

  • Acronis Agent: before c23.02 (fixed in c23.02)
  • Acronis Cyber Protect: version 15 only
  • Acronis Cyber Protect Home Office: affected versions not specified; version 39900 only; version 40107 only; version 40173 only; version 40208 only

Published 2023-08-31. Last modified 2026-06-17.