CVE-2024-34014

Arbitrary file overwrite during recovery due to improper symbolic link handling. The following products are affected: Acronis Backup plugin for cPanel & WHM (Linux) before build 1.8.3.818, Acronis Backup plugin for cPanel & WHM (Linux) before build 1.9.1.892, Acronis Backup extension for Plesk (Linux) before build 1.8.6.599, Acronis Backup plugin for DirectAdmin (Linux) before build 1.2.2.181.
Configurations

No configuration.

History

No history.

Information

Published : 2024-11-11 14:15

Updated : 2025-02-27 23:15


NVD link : CVE-2024-34014

Mitre link : CVE-2024-34014

CVE.ORG link : CVE-2024-34014


JSON object : View

Products Affected

No product.

CWE
CWE-61

UNIX Symbolic Link (Symlink) Following