CVE-2022-45457

Severity CVSS v4.0:
Pending analysis
Type:
CWE-295 Improper Certificate Validation
Publication date:
18/05/2023
Last modified:
26/05/2023

Description

Sensitive information disclosure and manipulation due to improper certification validation. The following products are affected: Acronis Agent (Windows) before build 29633, Acronis Cyber Protect 15 (Windows) before build 30984.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:acronis:agent:*:*:*:*:*:*:*:* c22.05 (excluding)
cpe:2.3:a:acronis:cyber_protect:*:*:*:*:*:*:*:* 15 (excluding)
cpe:2.3:a:acronis:cyber_protect:15:-:*:*:*:*:*:*
cpe:2.3:a:acronis:cyber_protect:15:update1:*:*:*:*:*:*
cpe:2.3:a:acronis:cyber_protect:15:update2:*:*:*:*:*:*
cpe:2.3:a:acronis:cyber_protect:15:update3:*:*:*:*:*:*
cpe:2.3:a:acronis:cyber_protect:15:update4:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools