bleeping-computer · Crawled Sep 16, 2026

Acronis warns of actively exploited flaw in its cPanel backup plugin

Read original article ↗

AI Summary

Acronis has disclosed a high-severity local privilege escalation vulnerability, CVE-2026-87886, in its backup plugins for cPanel & WHM and Plesk, which is being actively exploited in limited, targeted attacks. The vulnerability allows low-privileged attackers to escalate privileges on affected Linux servers, potentially enabling unauthorized access to sensitive data and system disruption. Exploitation has been detected in the wild, though no specific indicators of compromise have been identified. Acronis recommends immediate updates to patched versions to mitigate the risk.

AI-extracted · verify before operational use

No entities or IoCs were extracted from this article.