CVE-2022-45459 is a high-severity information disclosure vulnerability affecting Acronis Agent (Windows) before build 30025 and Acronis Cyber Protect 15 (Windows) before build 30984, stemming from insecure registry permissions. With a CVSS score of 7.5, this vulnerability allows an unauthenticated attacker to remotely access sensitive information with low attack complexity. There is currently no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< c22.07CPE matchmatch criteria | cpe:2.3:a:acronis:agent:*:*:*:*:*:*:*:* | ||
< 15CPE matchmatch criteria | cpe:2.3:a:acronis:cyber_protect:*:*:*:*:*:*:*:* | ||
15CPE matchmatch criteria | cpe:2.3:a:acronis:cyber_protect:15:-:*:*:*:*:*:* | ||
15CPE matchmatch criteria | cpe:2.3:a:acronis:cyber_protect:15:update1:*:*:*:*:*:* | ||
15CPE matchmatch criteria | cpe:2.3:a:acronis:cyber_protect:15:update2:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.