CVE-2024-34010: Acronis Cyber Protect 16

High severity, CVSS 8.2. EPSS: 0.2% chance of exploitation in the next 30 days.

Local privilege escalation due to unquoted search path vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 37758, Acronis Cyber Protect 16 (Windows) before build 38690, Acronis True Image (Windows) before build 42386, Acronis True Image OEM (Windows) before build 42575.

Affected products

  • Acronis Acronis Cyber Protect 16: before 38690 (fixed in 38690)
  • Acronis Acronis Cyber Protect Cloud Agent: before 37758 (fixed in 37758)
  • Acronis Acronis True Image: before 42386 (fixed in 42386)
  • Acronis Acronis True Image Oem: before 42575 (fixed in 42575)
  • Acronis Cyber Protect Cloud Agent

Published 2024-04-29. Last modified 2026-06-17.