Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Critical Acronis cPanel Plugin Flaw Exploited

Critical Acronis cPanel Plugin Flaw Exploited

Posted on September 16, 2026 By CWS

Acronis has issued a warning regarding a critical security weakness in its Backup plugin used for cPanel and Web Host Manager (WHM) installations. This vulnerability, identified as CVE-2026-87886 with a CVSS score of 7.8, poses a serious risk as it has been actively exploited in real-world attacks.

Details of the Vulnerability

The vulnerability stems from inadequate file permission settings, leading to a scenario where local privilege escalation is possible. This flaw affects specific versions of the plugin and could allow attackers with minimal access to elevate their privileges. Such an escalation could enable unauthorized actions, including executing arbitrary code that may compromise the application’s confidentiality and integrity.

Acronis has addressed this issue in the 1.9.3 HF3 update, emphasizing the urgency of implementing this fix. The company stated, “This update contains critical security patches and should be installed promptly by all users.” The exploitation has been observed in limited and targeted attacks.

Current Status and Response

Currently, detailed information about the vulnerability, the actors behind the exploitation, or their objectives remains undisclosed. The timeline for when the vulnerability was first detected and exploited is also unclear. Efforts to contact Acronis for further insights are ongoing, and any new information will be shared as it becomes available.

Customers using the Acronis Backup plugin are strongly encouraged to apply the latest updates immediately to mitigate potential risks. Staying current with software patches is essential to maintain the security of data and systems.

Looking Forward

This incident highlights the importance of vigilance in cybersecurity practices, especially for software commonly used in web hosting environments. As organizations continue to face sophisticated cyber threats, maintaining robust security measures and promptly addressing vulnerabilities is critical.

Ensuring regular software updates and monitoring for advisories from vendors like Acronis can help protect against emerging threats and safeguard sensitive information.

The Hacker News Tags:Acronis, cPanel, CVE-2026-87886, Cybersecurity, data protection, Linux vulnerability, privilege escalation, security flaw, software update, technology news

Post navigation

Previous Post: CenterPoint Energy Reports Customer Data Breach Incident
Next Post: Chrome and Firefox Address Critical Security Vulnerabilities

Related Posts

China-Linked Group Unleashes StormEncryptor Ransomware China-Linked Group Unleashes StormEncryptor Ransomware The Hacker News
Critical PHP Composer Vulnerabilities Patched Critical PHP Composer Vulnerabilities Patched The Hacker News
Over 269,000 Websites Infected with JSFireTruck JavaScript Malware in One Month Over 269,000 Websites Infected with JSFireTruck JavaScript Malware in One Month The Hacker News
Anthropic’s Claude Code Leak: Human Error Leads to Source Code Exposure Anthropic’s Claude Code Leak: Human Error Leads to Source Code Exposure The Hacker News
CISA Warns of Two Malware Strains Exploiting Ivanti EPMM CVE-2025-4427 and CVE-2025-4428 CISA Warns of Two Malware Strains Exploiting Ivanti EPMM CVE-2025-4427 and CVE-2025-4428 The Hacker News
New Albiriox MaaS Malware Targets 400+ Apps for On-Device Fraud and Screen Control New Albiriox MaaS Malware Targets 400+ Apps for On-Device Fraud and Screen Control The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • German Firm Enhances Security Alert Handling with Cloud Sandbox
  • CISA Highlights Major ScreenConnect Security Flaw
  • Chrome and Firefox Address Critical Security Vulnerabilities
  • Critical Acronis cPanel Plugin Flaw Exploited
  • CenterPoint Energy Reports Customer Data Breach Incident

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • German Firm Enhances Security Alert Handling with Cloud Sandbox
  • CISA Highlights Major ScreenConnect Security Flaw
  • Chrome and Firefox Address Critical Security Vulnerabilities
  • Critical Acronis cPanel Plugin Flaw Exploited
  • CenterPoint Energy Reports Customer Data Breach Incident

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark