📦

snap_deploy

Vendor: acronis

Actively Exploited 0 CISA KEV List
PoC / Exploits 2 Code Available
Total RCEs 0 Remote Access
Total CVEs 9 Total Indexed
Avg. EPSS 2.36% Exploit Prob.
Latest CVE CVE-2024-34019 Aug 29

Security Vulnerability Index

Page 1 / 1
7.3 CVSS

Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Snap Deploy (Windows) before build 4569.

EPSS: 0.14%
5.5 CVSS

Sensitive information disclosure due to insecure folder permissions. The following products are affected: Acronis Snap Deploy (Windows) before build 4569.

EPSS: 0.15%
7.3 CVSS

Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Snap Deploy (Windows) before build 4569.

EPSS: 0.14%
7.8 CVSS

Local privilege escalation due to a DLL hijacking vulnerability. The following products are affected: Acronis Snap Deploy (Windows) before build 3900.

EPSS: 0.05%
7.8 CVSS

Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Snap Deploy (Windows) before build 3640

EPSS: 0.04%
7.8 CVSS

Local privilege escalation due to a DLL hijacking vulnerability. The following products are affected: Acronis Snap Deploy (Windows) before build 3640

EPSS: 0.05%
7.8 CVSS

Local privilege escalation due to excessive permissions assigned to child processes. The following products are affected: Acronis Snap Deploy (Windows) before build 3640

EPSS: 0.09%
4.3 CVSS
CVE-2008-1410
Exploit Found

Directory traversal vulnerability in the PXE Server (pxesrv.exe) in Acronis Snap Deploy 2.0.0.1076 and earlier allows remote attackers to read arbitrary files via directory traversal sequences to the TFTP service.

EPSS: 10.51%
5.0 CVSS
CVE-2008-1411
Exploit Found

The PXE Server (pxesrv.exe) in Acronis Snap Deploy 2.0.0.1076 and earlier allows remote attackers to cause a denial of service (crash) via an incomplete TFTP request, which triggers a NULL pointer dereference.

EPSS: 10.08%