CVE-2025-7779
CVSS Score
8.8
EPSS Score
0.0%
EPSS Percentile
2th
Local privilege escalation due to insecure XPC service configuration. The following products are affected: Acronis True Image (macOS) before build 42389, Acronis True Image for SanDisk (macOS) before build 42198, Acronis True Image for Western Digital (macOS) before build 42197, Acronis True Image OEM (macOS) before build 42571.
| CWE | CWE-269 |
| Vendor | acronis |
| Product | acronis true image |
| Published | Sep 30, 2025 |
| Last Updated | Apr 10, 2026 |
Stay Ahead of the Next One
Get instant alerts for acronis acronis true image
Be the first to know when new high vulnerabilities affecting acronis acronis true image are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
CVSS v3 Breakdown
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H Affected Versions
Acronis / Acronis True Image
unspecified < 42389
Acronis / Acronis True Image for SanDisk
unspecified < 42198
Acronis / Acronis True Image for Western Digital
unspecified < 42197
Acronis / Acronis True Image OEM
unspecified < 42571
References
Credits
@nullevent (https://hackerone.com/nullevent) Carlos Garrido (https://pentraze.com/vulnerability-reports) Pentraze Cyber Security (https://pentraze.com/vulnerability-reports)