← Back to CVE List
CVE-2026-87886NVD
Description
Local privilege escalation due to insecure file permissions. The following products are affected: Acronis Backup plugin for cPanel & WHM (Linux) before build 1.9.3.1021, Acronis Backup extension for Plesk (Linux) before build 1.8.11.638, Acronis Backup plugin for DirectAdmin (Linux) before build 1.2.3.238.
CVSS Base Metrics
CVSS v3 (3.0)
HIGH 7.8
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Weaknesses (CWE)
CWE-276 - CWE-276
Affected & Patched Versions
| Product | Affected Versions | Patched Version |
|---|---|---|
| Acronis Acronis Backup plugin for cPanel & WHM | unspecified - < 1.9.3.1021 | N/A |
| Acronis Acronis Backup extension for Plesk | unspecified - < 1.8.11.638 | N/A |
| Acronis Acronis Backup plugin for DirectAdmin | unspecified - < 1.2.3.238 | N/A |