CVE-2025-11178
CVSS Score
7.3
EPSS Score
0.0%
EPSS Percentile
0th
Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis True Image (Windows) before build 42386, Acronis True Image for Western Digital (Windows) before build 42636, Acronis True Image for SanDisk (Windows) before build 42679, Acronis True Image OEM (Windows) before build 42575.
| CWE | CWE-427 |
| Vendor | acronis |
| Product | acronis true image |
| Published | Sep 30, 2025 |
| Last Updated | Apr 10, 2026 |
Stay Ahead of the Next One
Get instant alerts for acronis acronis true image
Be the first to know when new high vulnerabilities affecting acronis acronis true image are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
CVSS v3 Breakdown
CVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H Affected Versions
Acronis / Acronis True Image
unspecified < 42386
Acronis / Acronis True Image for Western Digital
unspecified < 42636
Acronis / Acronis True Image for SanDisk
unspecified < 42679
Acronis / Acronis True Image OEM
unspecified < 42575
References
Credits
@satz4797 (https://hackerone.com/satz4797)