#6
The Hacker News
general
September 16, 2026 at 11:08 UTC
Acronis cPanel Backup Plugin Vulnerability Exploited in Targeted Attacks
By [email protected] (The Hacker News)
AI Summary
CVE-2026-87886 (CVSS 7.8), a local privilege escalation flaw in Acronis Backup plugin for cPanel, WHM, and Plesk caused by insecure file permissions on Linux systems, has been confirmed actively exploited in targeted attacks. Web hosting providers and managed service providers running Acronis cPanel backup integrations are at direct risk and should apply available patches immediately.
Relevance score: 83.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →