cbcvebase.
CVE-2025-7779
published 2025-09-30

CVE-2025-7779: Local privilege escalation due to insecure XPC service configuration. The following products are affected: Acronis True Image (macOS) before build 42389…

PriorityP344high8.8CVSS 3.0
AVLACLPRLUINSCCHIHAH
EPSS
0.11%
1.8th percentile
Local privilege escalation due to insecure XPC service configuration. The following products are affected: Acronis True Image (macOS) before build 42389, Acronis True Image for SanDisk (macOS) before build 42198, Acronis True Image for Western Digital (macOS) before build 42197, Acronis True Image OEM (macOS) before build 42571.

Affected

4 ranges
VendorProductVersion rangeFixed in
acronisacronis_true_image>= unspecified < 4238942389
acronisacronis_true_image_for_sandisk>= unspecified < 4219842198
acronisacronis_true_image_for_western_digital>= unspecified < 4219742197
acronisacronis_true_image_oem>= unspecified < 4257142571
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.