What’s actually slowing this PC down?
Pick the symptom - the matching free tool is one click away.
iTechGuides is reader-supported. When you buy through links on our site, we may earn an affiliate commission. As an Amazon Associate I earn from qualifying purchases. Learn more
Yes, an Acronis Backup integration on a Linux hosting server may be vulnerable if its build is below the fixed threshold for its control panel. CVE-2026-87886 affects the cPanel & WHM, Plesk, and DirectAdmin integrations. It is a local privilege-escalation flaw, not a vulnerability that an attacker can exploit remotely on its own. Acronis-reported exploitation has been limited and targeted at cPanel & WHM deployments.
Which Acronis Backup plugin versions are affected?
The CVE record lists Linux integration builds below the thresholds below as affected. CERT Vanuatu independently identifies fixed builds for cPanel & WHM and Plesk.
| Control panel | Affected Linux builds | Fixed threshold and guidance |
|---|---|---|
| cPanel & WHM | Earlier than 1.9.3.1021 | 1.9.3 HF3 (1.9.3.1021) or later, recommended by CERT Vanuatu. |
| Plesk | Earlier than 1.8.11.638 | 1.8.11.638 or later, recommended by CERT Vanuatu. |
| DirectAdmin | Earlier than 1.2.3.238 | The CVE record gives 1.2.3.238 as the threshold. Confirm the corrected build and update procedure with Acronis. |
These thresholds apply to the named Acronis integrations on Linux; they do not mean that every installation of those control panels, or every shared-hosting provider, is affected. The CVE record classifies the flaw as CWE-276, incorrect default permissions.
How serious is CVE-2026-87886?
The CVE record assigns the vulnerability a CVSS 3.0 score of 7.8 (High), with vector CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H. The score assumes an attacker already has local access with low privileges; it rates the potential confidentiality, integrity, and availability impact as high if exploitation succeeds. The flaw is therefore a privilege escalation, not a standalone remote-entry vulnerability.
#1 Best Overall
- Easily store and access 2TB to content on the go with the Seagate Portable Drive, a USB external hard drive
- Designed to work with Windows or Mac computers, this external hard drive makes backup a snap just drag and drop
- To get set up, connect the portable hard drive to a computer for automatic recognition no software required
- This USB drive provides plug and play simplicity with the included 18 inch USB 3.0 cable
- The available storage capacity may vary.
CERT Vanuatu says successful exploitation may let an attacker with a low-privileged authenticated account escalate privileges, perform unauthorized actions, or run arbitrary code. The CVE record’s CISA ADP enrichment lists the issue as added to the Known Exploited Vulnerabilities catalog on September 16, 2026; that date and status are reported by the enrichment in the CVE record.
Does CVE-2026-87886 affect shared hosting?
It is relevant to shared Linux hosting when an affected Acronis integration is installed on a host and an attacker can obtain a low-privileged local account there. The local-access requirement makes tenant accounts a pertinent part of an operator’s risk assessment, but the available reports do not establish how many providers or tenants are exposed.
Rank #2
- World’s First 6TB 2.5” Portable Hard Drive
- Slim durable design to help take your important files with you
- Vast capacities up to 6TB[1] to store your photos, videos, music, important documents and more
- Back up smarter with included device management software[2] with defense against ransomware
- Help secure your important files with password protection and hardware encryption
SecurityWeek reported Acronis’s statement that exploitation had been detected “in the wild in limited, targeted attacks” against Acronis Backup plugin deployments for cPanel & WHM. This is reported exploitation for cPanel & WHM only; it is not evidence of widespread attacks or exploitation of every listed integration.
How do I check whether my installation is vulnerable?
- Identify the server and panel. Inventory Linux hosts using cPanel & WHM, Plesk, or DirectAdmin and determine whether the matching Acronis Backup plugin or extension is installed.
- Check the integration’s installed build. Use the control panel’s supported plugin or extension management interface, or Acronis’s documentation for that integration. The cited advisories do not establish a universal menu path or command for checking the build.
- Compare the build with the matching threshold. A build lower than the value in the table is affected according to the CVE record. Do not compare a plugin’s version against another panel’s threshold.
- Prioritize hosts with local accounts. In shared environments, include low-privileged tenant accounts in the assessment because the vulnerability is classified as requiring local access.
How do I fix CVE-2026-87886?
cPanel & WHM
Update the Acronis Backup plugin to 1.9.3 HF3 (1.9.3.1021) or later, following the supported Acronis or panel-provider procedure. CERT Vanuatu identifies that build as patched.
Rank #3
- Slim durable design to help take your important files with you
- Back up smarter with included device management software[2] with defense against ransomware
- Help secure your important files with password protection and hardware encryption
- 3-year limited warranty
Plesk
Update the Acronis Backup extension to 1.8.11.638 or later using the supported update procedure. CERT Vanuatu identifies this threshold as patched.
DirectAdmin
Use 1.2.3.238 as the CVE record’s affected-version cutoff and obtain the corrected build and installation instructions from Acronis. The threshold is documented, but a detailed DirectAdmin update procedure is not established here; do not substitute an unverified package command.
Quick Recap
Best Value
- Slim durable design to help take your important files with you
- Vast capacities up to 6TB[1] to store your photos, videos, music, important documents and more
- Back up smarter with included device management software[2] with defense against ransomware
- Help secure your important files with password protection and hardware encryption
- 3-year limited warranty
Rank #4
- Slim durable design to help take your important files with you
- Vast capacities up to 6TB[1] to store your photos, videos, music, important documents and more
- Back up smarter with included device management software[2] with defense against ransomware
- Help secure your important files with password protection and hardware encryption
- 3-year limited warranty
After updating
- Verify that the installed integration build meets or exceeds the applicable fixed threshold.
- Apply least privilege to local accounts as defense in depth; CERT Vanuatu recommends this measure, but it does not replace updating an affected integration.
Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.
Do these 3 things before closing this tab:
1Repair Windows errors before they cause bigger problems2Scan for outdated or missing drivers - takes under a minute3Clear out junk files and repair common Windows errors

