Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://security-advisory.acronis.com/advisories/SEC-4168 |
|
Fri, 17 Apr 2026 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Default Credentials in Acronis Virtual Appliance Enable Local Privilege Escalation |
Fri, 13 Mar 2026 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Acronis agent
Acronis cyber Protect |
|
| CPEs | cpe:2.3:a:acronis:agent:*:*:*:*:*:*:*:* cpe:2.3:a:acronis:cyber_protect:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Acronis agent
Acronis cyber Protect |
Fri, 06 Mar 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 06 Mar 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Acronis
Acronis acronis Cyber Protect 17 Acronis cyber Protect Cloud Agent |
|
| Vendors & Products |
Acronis
Acronis acronis Cyber Protect 17 Acronis cyber Protect Cloud Agent |
Fri, 06 Mar 2026 00:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Default credentials set for local privileged user in Virtual Appliance. The following products are affected: Acronis Cyber Protect Cloud Agent (VMware) before build 36943, Acronis Cyber Protect 17 (VMware) before build 41186. | |
| Weaknesses | CWE-1392 | |
| References |
| |
| Metrics |
cvssV3_0
|
Status: PUBLISHED
Assigner: Acronis
Published:
Updated: 2026-03-07T04:55:22.751Z
Reserved: 2026-03-03T02:29:03.753Z
Link: CVE-2026-28713
Updated: 2026-03-06T19:31:16.739Z
Status : Analyzed
Published: 2026-03-06T00:16:11.750
Modified: 2026-03-13T16:37:26.227
Link: CVE-2026-28713
No data.
OpenCVE Enrichment
Updated: 2026-04-17T12:45:16Z