Home / Sep 17, 2026 / Story
0
#6 The Hacker News general September 16, 2026 at 11:08 UTC

Acronis cPanel Backup Plugin Vulnerability Exploited in Targeted Attacks

By [email protected] (The Hacker News)

AI Summary

CVE-2026-87886 (CVSS 7.8), a local privilege escalation flaw in Acronis Backup plugin for cPanel, WHM, and Plesk caused by insecure file permissions on Linux systems, has been confirmed actively exploited in targeted attacks. Web hosting providers and managed service providers running Acronis cPanel backup integrations are at direct risk and should apply available patches immediately.

Relevance score: 83.0/100

# More from September 17