Acronis warns of Cyber Infrastructure default password abused in attacks
ID: 31c6c739-5651-58cb-8bca-23d800695809
STIX ID: report--31c6c739-5651-58cb-8bca-23d800695809
Feed Name: Bleeping Computer
Threat Score
Acronis warned that CVE-2023-45249 is a critical remote command execution vulnerability in Acronis Cyber Infrastructure (ACI) caused by the use of default passwords; unauthenticated attackers can perform low-complexity attacks to gain RCE on unpatched servers. The vendor confirmed active exploitation in the wild, listed affected ACI builds and corresponding patched updates, and urged customers to verify their build numbers and install the provided patches immediately.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
