logo

Acronis warns of Cyber Infrastructure default password abused in attacks

ID: 31c6c739-5651-58cb-8bca-23d800695809

STIX ID: report--31c6c739-5651-58cb-8bca-23d800695809

Feed Name: Bleeping Computer

Threat Score
75/100

Date Published: 2024-07-26

Date Updated: 2026-07-17

Author: Sergiu Gatlan

...
...

Acronis warned that CVE-2023-45249 is a critical remote command execution vulnerability in Acronis Cyber Infrastructure (ACI) caused by the use of default passwords; unauthenticated attackers can perform low-complexity attacks to gain RCE on unpatched servers. The vendor confirmed active exploitation in the wild, listed affected ACI builds and corresponding patched updates, and urged customers to verify their build numbers and install the provided patches immediately.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.