CVE-2025-30410Disclosure

LOWCVSS 9.8 · CRITICAL

Signal is active with 4 mentions in latest observed window

Immediate actions

  • Patch affected systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Sensitive data disclosure and manipulation due to missing authentication. The following products are affected: Acronis Cyber Protect Cloud Agent (Linux, macOS, Windows) before build 39870, Acronis Cyber Protect 16 (Linux, macOS, Windows) before build 39938, Acronis Cyber Protect 15 (Linux, macOS, Windows) before build 41800.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-306

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

NONE

Threat summary

  • Patch or workaround signal is available
  • 4 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 4 signals
  • Disclosure: 2 classified signals
  • General: 1 classified signal
  • 4 total mentions across 1 day

Deep dive

Activity timeline4 mentions / 1d
01234Mentions · 2026-02-20: 4Patch / Workaround · 2026-02-20: 1Technical Details · 2026-02-20: 402-20
Signal classification3 categories
Disclosure
250.0%
General
125.0%
Patch
125.0%
Referenced assets4 URLs
Full discourse4 posts
  • Vulmon Vulnerability Feed@VulmonFeeds
    General

    CVE-2025-30410 Unauthenticated Data Disclosure and Manipulation in Acronis Cyber Protect Products https://vulmon.com/vulnerabilitydetails?qid=CVE-2025-30410

    Post summary

    The text merely announces CVE‑2025‑30410, noting it causes unauthenticated data disclosure and manipulation within Acronis Cyber Protect Products, without further detail.

    0001033
    4.0K followersView on X
  • The Hacker Wire@TheHackerWire
    Disclosure

    🔴 CVE-2025-30410 - Critical Sensitive data disclosure and manipulation due to missing authentication. The following products are affected: Acronis Cyber Protect Cloud Agent (Linux, macOS, Windows) before build 39870... https://www.thehackerwire.com/vulnerability/CVE-2025-30410/ https://t.co/nqCZToXnOs

    Post summary

    A new CVE-2025-30410 is disclosed, where missing authentication allows sensitive data disclosure and manipulation on Acronis Cyber Protect Cloud Agent before build 39870.

    0001075
    112 followersView on X
  • CVEFind.com@CveFindCom
    Patch

    [CVE-2025-30410: CRITICAL] Data at risk! Missing authentication in Acronis products exposes sensitive data. Update to the latest builds: Acronis Cyber Protect Cloud Agent, Acronis Cyber Protect 16, Acronis C...#cve,CVE-2025-30410,#cybersecurity https://cvefind.com/CVE-2025-30410

    Post summary

    The post warns that CVE‑2025‑30410 is a critical missing authentication flaw in Acronis products and directs users to update to the latest builds to remediate the risk.

    0000041
    578 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2025-30410 Sensitive data disclosure and manipulation due to missing authentication. The following products are affected: Acronis Cyber Protect Cloud Agent (Linux, macOS, Window… https://www.cve.org/CVERecord?id=CVE-2025-30410

    Post summary

    The post announces CVE-2025-30410, outlining a missing authentication flaw in Acronis Cyber Protect Cloud Agent that allows sensitive data disclosure and manipulation, with no PoC, exploit, or patch information disclosed.

    0000089
    56.4K followersView on X

Explore more