Search/CVE-2026-87886
CVE — High

CVE-2026-87886

Local privilege escalation due to insecure file permissions. The following products are affected: Acronis Backup plugin for cPanel & WHM (Linux) before build 1.9.3.1021, Acronis Backup extension for Plesk (Linux) before build 1.8.11.638, Acronis Backup plugin for DirectAdmin (Linux) before build 1.2.3.238.

CVSS v3.1
7.8 HIGH
EPSS
0.28%
probability of exploitation in 30 days
CISA KEV
Listed
confirmed active exploitation
News coverage
1
sources referencing this CVE
CVSS v3.1 Detail
Attack VectorLOCAL
Attack ComplexityLOW
Privileges RequiredLOW
User InteractionNONE
ScopeUNCHANGED
ConfidentialityHIGH
IntegrityHIGH
AvailabilityHIGH
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Connections
3 relationships
Timeline
disclosure → media coverage
Sep 17, 2026
Disclosure — published as a CVE record.
Sep 20, 2026
helpnetsecurity.com reports: Week in review: Cisco patches exploited email gateway 0-day, Revolut breach