CVE Vulnerabilities

CVE-2026-28718

Logging of Excessive Data

Published: Mar 06, 2026 | Modified: Mar 12, 2026
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Denial of service due to insufficient input validation in authentication logging. The following products are affected: Acronis Cyber Protect 17 (Linux, Windows) before build 41186.

Weakness

The product logs too much information, making log files hard to process and possibly hindering recovery efforts or forensic analysis after an attack.

Affected Software

NameVendorStart VersionEnd Version
Cyber_protectAcronis*17.0.41186 (excluding)

Potential Mitigations

References