Patch now! Malicious code attacks on Acronis Cyber Infrastructure observed
The developers have closed a critical vulnerability in several updated versions of Acronis Cyber Infrastructure.
(Image: Dmitry Demidovich/Shutterstock.com)
Attackers are currently targeting the IT security solution Acronis Cyber Infrastructure (ACI). Versions secured against this are available.
In a post, the provider warns of attacks on the"critical" vulnerability (CVE-2023-45249). Attacks should be possible from a distance and malicious code can get onto systems. The source of the problem is a default password. The extent of the attacks is currently unknown.
Videos by heise
Acronis claims to have prepared the following editions against the attacks. All previous versions are said to be vulnerable.
- ACI build 5.0.1-61
- ACI build 5.1.1-71
- ACI build 5.2.1-69
- ACI build 5.3.1-53
- ACI build 5.4.4-132
(des)