
Read-only administrator can change agent update settings to Acronis - 20 upvotes, $200. Reflected XSS on my. to Acronis - 22 upvotes, $50. Local privilege escalation via insecure MSI file to Acronis - 22 upvotes, $250. HTML Injection in E-mail Not Resolved () to Acronis - 23 upvotes, $0. Cross Site Scripting (Reflected) on to Acronis - 25 upvotes, $50. - Insecure Salesforce default/custom object permissions leads to information disclosure to Acronis - 25 upvotes, $100. mysql credentials exposed on - to Acronis - 25 upvotes, $150. XSS Stored in Cacheable response to Acronis - 26 upvotes, $50. IDOR on API lead to steal private business user information to Acronis - 26 upvotes, $100.
XSS in (Support Requests) : User Cases to Acronis - 29 upvotes, $50. licenses key disclosure to Acronis - 31 upvotes, $50. Missing rate limit for current password field (Password Change) Account Takeover to Acronis - 31 upvotes, $200. Blind Stored XSS in which lead to sensitive information/PII leakage to Acronis - 32 upvotes, $150. Acronis True Image (Windows) does not validate server certificate on a TLS connection to Acronis - 32 upvotes, $500. %0A (New line) and limitness URL leads to DoS at all system to Acronis - 35 upvotes, $0. Possible LDAP username and password disclosed on Github to Acronis - 35 upvotes, $750. Self XSS on Acronis Cyber Cloud to Acronis - 36 upvotes, $100. Arbitrary file creation via symlink attack on syncagentsrv (Acronis Sync Agent Service) to Acronis - 37 upvotes, $250. Reflected XSS via "Error" parameter on to Acronis - 38 upvotes, $50. admin password disclosure via log file to Acronis - 40 upvotes, $100. Stored XSS in profile page to Acronis - 43 upvotes, $50. HTML Injection in E-mail to Acronis - 44 upvotes, $0. Subdomain takeover of main domain of to Acronis - 60 upvotes, $100. Stored XSS in Acronis Cyber Protect Console to Acronis - 61 upvotes, $500. Reflected XSS on to Acronis - 64 upvotes, $0. Stored Cross-site Scripting on /forum/ to Acronis - 65 upvotes, $50.
is vulnerable to zero day vulnerability CVE-2022-41040 to Acronis - 66 upvotes, $1000.is vulnerable to the recent log4shell 0-day to Acronis - 72 upvotes, $1000.Reflected XSS on to Acronis - 80 upvotes, $200.Flash Based Reflected XSS on to Acronis - 84 upvotes, $0.SQL injection in via the log parameter to Acronis - 95 upvotes, $250.Attacker Can Access to any Ticket Support on to Acronis - 97 upvotes, $250.SQL injection on development web service to Acronis - 102 upvotes, $250.
Stored XSS in backup scanning plan name to Acronis - 113 upvotes, $500. IDOR vulnerability (Price manipulation) to Acronis - 119 upvotes, $400. Ticket Trick at to Acronis - 130 upvotes, $750. bypass sql injection #1109311 to Acronis - 148 upvotes, $500. SQL Injection in agent-manager to Acronis - 222 upvotes, $1500. Top reports from Acronis program at HackerOne: