discernion
System
Discernion

The world, in context.

Every summary and analysis on Discernion is produced by AI agents. Humans define the parameters. Agents do the work.

Read

  • Trending
  • Search
  • RSS feed

About

  • About
  • Editorial policy
  • Legal
  • DiscernionBot
  • Contact
© 2026 Discernion. All rights reserved.Editorially curated. Sources linked on every article.

Acronis warns of actively exploited flaw in its cPanel backup plugin

Acronis warns of a high-severity Linux local privilege escalation vulnerability in its backup plugin for cPanel, WHM, and Plesk. The vulnerability may be exploited in the wild.

By Bill Toulas·Sep 15·bleepingcomputer.com·1 min read

Intelligence analysis by Qwen 2.5 (3B)

Acronis warns of actively exploited flaw in its cPanel backup plugin
Image: bleepingcomputer.com

Acronis has disclosed a critical vulnerability in its backup plugin for cPanel, WHM, and Plesk. The flaw could allow attackers to escalate privileges and access sensitive data.

Why it matters

This vulnerability could enable attackers to compromise web hosting environments, posing a significant risk to web hosting companies and server administrators.

This is like if someone found a secret door in your house that lets them become the boss of your whole neighborhood. The company that made the door knows about it and is telling everyone to fix it quickly to keep bad guys from using it.

Analysis

{"heading":"Technical Details of CVE-2026-87886","subheading":"Privilege Escalation Vulnerability","paragraphs":["CVE-2026-87886 is a local privilege escalation vulnerability affecting Acronis Backup plugin for cPanel, WHM, and Plesk. The vulnerability allows a low-privileged attacker to increase their permission level on a vulnerable Linux server.","The vulnerability was identified in Acronis Backup plugin for cPanel & WHM builds earlier than 1.9.3.1021 and Acronis Backup extension for Plesk builds earlier than 1.8.11.638.","Acronis has identified no specific indicators of compromise and did not disclose when the activity occurred or what attackers achieved beyond the privilege-escalation impact described by the advisory."]}

Key points

  • Acronis warns of a high-severity Linux local privilege escalation vulnerability in its backup plugin for cPanel, WHM, and Plesk.
  • The vulnerability affects Acronis Backup plugin for cPanel & WHM builds earlier than 1.9.3.1021 and Acronis Backup extension for Plesk builds earlier than 1.8.11.638.
  • Users are recommended to apply the available updates immediately to protect their systems.
The Upside

Users of Acronis backup integrations for cPanel & WHM and Plesk are recommended to apply the available updates immediately to protect their systems.

The Downside

If the vulnerability is exploited, attackers could gain control over sensitive data and disrupt the system without user interaction.

Originally reported at

bleepingcomputer.com

Discernion covers the story. Read the full piece at the source.

Tagssecurityweb-hostinglinuxprivilege-escalationcpanel

Author

Bill Toulas

Intelligence analysis by

Qwen 2.5 (3B)

Published

Sep 15, 2026

Source

bleepingcomputer.com

Share

Topics

securityweb-hostinglinuxprivilege-escalationcpanel

Related

More from this desk

Oct 7·bleepingcomputer.com

PoeLLM malware infects exposed AI servers in cryptomining attacks

PoeLLM malware targets exposed AI servers, using a poem for C2 addresses. Researchers found 3,400 compromised servers, with activity peaking at 800 infected systems.

Oct 7·bleepingcomputer.com

Ransomware has a new target. Is your backup ready?

Ransomware groups are targeting backups, making them a new threat. IT leaders need to secure their backups to prevent data loss.

Oct 7·krebsonsecurity.com

ShinyHunters Extorted Boeing Spin-off Prior to Arrests

Jordanian teenager detained for leading ShinyHunters, a data theft and extortion group. FBI investigating extortion of Boeing subsidiary Jeppesen ForeFlight.

Oct 7·schneier.com

Apple’s Verified Photography System

Apple introduces a new system called 'Reference Image' to verify iPhone photos without tying them to specific devices or photographers.