CVE-2026-41220Disclosure

LOWCVSS 7.8 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Local privilege escalation due to improper input validation. The following products are affected: Acronis DeviceLock DLP (Windows) before build 9.0.93212, Acronis Cyber Protect Cloud Agent (Windows) before build 42183.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-787

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Threat summary

  • 3 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • General: 1 classified signal
  • Peaked 1d ago at 2 mentions (2026-04-29); latest day: 1
  • 3 total mentions across 2 days

Deep dive

Activity timeline3 mentions / 2d
01122Mentions · 2026-04-29: 2Mentions · 2026-05-15: 1Technical Details · 2026-04-29: 204-2905-15
Signal classification2 categories
Disclosure
266.7%
General
133.3%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-04-292
Disclosure2
2026-05-151
General1
Full discourse3 posts
  • ケイ | IT・セキュリティ系副業Webライター@Teeeda_worker
    General

    アクロニス製品の脆弱性を解説 影響と対策を要点で確認できます 【脆弱性情報】 CVE-2026-41220 Acronis DeviceLock DLP (Windows), Acronis Cyber Protect Cloud Agent (Windows)の脆弱性について https://www.cybernote.click/2026/05/06/%e3%80%90%e8%84%86%e5%bc%b1%e6%80%a7%e6%83%85%e5%a0%b1%e3%80%91-cve-2026-41220-acronis-devicelock-dlp-windows-acronis-cyber-protect-cloud-agent-windows%e3%81%ae%e8%84%86%e5%bc%b1%e6%80%a7/?utm_source=rss&utm_medium=rss&utm_campaign=%25e3%2580%2590%25e8%2584%2586%25e5%25bc%25b1%25e6%2580%25a7%25e6%2583%2585%25e5%25a0%25b1%25e3%2580%2591-cve-2026-41220-acronis-devicelock-dlp-windows-acronis-cyber-protect-cloud-agent-windows%25e3%2581%25ae%25e8%2584%2586%25e5%25bc%25b1%25e6%2580%25a7 #ブログ仲間と繋がりたい #Webライター

    Post summary

    The post announces CVE-2026-41220 affecting Acronis DeviceLock DLP and Cyber Protect Cloud Agent, provides a high‑level overview of impact and mitigation, but lacks detailed technical or exploit information.

    0000064
    206 followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-41220 Local privilege escalation due to improper input validation. The following products are affected: Acronis DeviceLock DLP (Windows) before build 9.0.93212, Acronis Cyb… https://www.cve.org/CVERecord?id=CVE-2026-41220 ----- Traducción: Vulnerabilidad de … http://infoflow.cloud`

    Post summary

    The content announces CVE-2026-41220, detailing a local privilege escalation in certain Acronis products caused by input validation flaws, without mentioning PoC, exploitation, or patches.

    0000030
    74 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-41220 Local privilege escalation due to improper input validation. The following products are affected: Acronis DeviceLock DLP (Windows) before build 9.0.93212, Acronis Cyb… https://www.cve.org/CVERecord?id=CVE-2026-41220

    Post summary

    CVE-2026-41220 is disclosed as a local privilege escalation flaw caused by improper input validation in Acronis DeviceLock DLP (Windows) before build 9.0.93212; no PoC, exploit, or mitigation details are present.

    00000142
    57.3K followersView on X

Explore more